Malware

Ulise.101407 information

Malware Removal

The Ulise.101407 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.101407 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Steals private information from local Internet browsers
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
installsilver.top
a.tomx.xyz

How to determine Ulise.101407?


File Info:

crc32: 2B108458
md5: 21c7eade85812910fda111f9e1fec83b
name: 001.exe
sha1: 2de6b1eec6d94d73ebddb375b6c6c67b2446cdf5
sha256: da600256e16fc62963cfade0462dc699de104283654168675bf9306bc7685fb7
sha512: cdfcda7cf881559eba90a51dc2bc2960406903c40c83b60df77fecd78bd0c4a6cce50c12e3d69c792f395c8e4911d900ce8b3f1c1aab106b5040ae91e870124d
ssdeep: 49152:cjG30UP3pzNOWgqg0ieahDNFvzKiYDhyYij27E0rEB08:f30cDOWgqgQyJFvBYDhy5orEH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: CopyRight (C) 2019
InternalName: ByteDownload
FileVersion: 1, 0, 0, 2
CompanyName: 003
ProductName: ByteDownload Application
ProductVersion: 1, 0, 0, 2
FileDescription: ByteDownload Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: 003.EXE
Translation: 0x0804 0x04b0

Ulise.101407 also known as:

BkavHW32.Packed.
MicroWorld-eScanGen:Variant.Ulise.101407
FireEyeGeneric.mg.21c7eade85812910
ALYacGen:Variant.Ulise.101407
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabHacktool.Win32.Generic.x!c
K7AntiVirusTrojan ( 005239691 )
BitDefenderGen:Variant.Ulise.101407
K7GWTrojan ( 005239691 )
Cybereasonmalicious.ec6d94
TrendMicroTROJ_GEN.R002C0PBP20
BitDefenderThetaGen:NN.ZexaF.34096.Mw1@auyjfToj
CyrenW32/Trojan.ZDMO-2486
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Noobyprotect-6622929-0
GDataWin32.Riskware.NoobyProtect.B
KasperskyHEUR:Packed.Win32.Generic
AlibabaPacked:Win32/NoobyProtect.8a6e9d9c
NANO-AntivirusVirus.Win32.Gen.ccmw
RisingTrojan.Occamy!8.F1CD (CLOUD)
Ad-AwareGen:Variant.Ulise.101407
SophosMal/Generic-S
ComodoMalware@#f9d737k1kjf6
F-SecureHeuristic.HEUR/AGEN.1010504
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Ulise.101407 (B)
IkarusPUA.NoobyProtect
JiangminPacked.Generic.abt
MaxSecureTrojan.Malware.2329303.susgen
AviraHEUR/AGEN.1010504
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ZoneAlarmHEUR:Packed.Win32.Generic
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
McAfeePacked-LF!21C7EADE8581
MAXmalware (ai score=86)
VBA32Trojan.Wacatac
MalwarebytesTrojan.Injector
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Packed.NoobyProtect.G suspicious
TrendMicro-HouseCallTROJ_GEN.R002C0PBP20
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.FKM!tr
WebrootW32.Trojan.Gen
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.3bf

How to remove Ulise.101407?

Ulise.101407 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment