Malware

Ulise.149070 removal instruction

Malware Removal

The Ulise.149070 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.149070 virus can do?

  • At least one process apparently crashed during execution
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Ulise.149070?


File Info:

name: 80430AC574C9CD397B46.mlw
path: /opt/CAPEv2/storage/binaries/7c27b3b572dfe12041128204a38d02d7467f29b56985a023afa43827e6bf7aa5
crc32: 57A4DA27
md5: 80430ac574c9cd397b46e7bce006e78e
sha1: 08224c095863a032d74c2960ba740e62c007cb88
sha256: 7c27b3b572dfe12041128204a38d02d7467f29b56985a023afa43827e6bf7aa5
sha512: 8f855c5f9e0ef1925198ed37a775c4f5b0c193c27c3e805a2f91e75b83438da31668e5caf7f7ddde01ba3e3b24a596a849a2e1177ec76944d22726f2c056fa89
ssdeep: 3072:Wimr+EU+DawW3XJrmWuL8DkLoABNpn9+QE5cujcA5RUPH09B1KNjx6Qgsd:Pmr+E60WoPLtIQQcPkR6Hjx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AE847C0BB184545AE4B10032589504F7A4E2FC2826766EA7778EFF2F4D74995C728F3E
sha3_384: 3eb17ca3aa7e767a793c49457e8ef8114f0cbc25751fbfd54c0e532a9905c43022d12423a5ea5114a5fd0005c49d4e49
ep_bytes: 558bec6aff68403b400068a203410064
timestamp: 2015-03-09 06:31:26

Version Info:

FileDescription: 搜狗高速浏览器
FileVersion: 5.2.5.15987
ProductName: 搜狗高速浏览器
ProductVersion: 5.2.5.15987
CompanyName: Sogou.com
LegalCopyright: (C)2015 Sogou.com Inc. All rights reserved.
Comments: 搜狗高速浏览器
InternalName: 搜狗高速浏览器
OriginalFilename: 搜狗高速浏览器
Translation: 0x0409 0x04b0

Ulise.149070 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Magania.lMCb
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ulise.149070
McAfeeArtemis!80430AC574C9
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004d531c1 )
AlibabaTrojan:Win32/Farfli.1e534617
K7GWTrojan ( 004d531c1 )
Cybereasonmalicious.574c9c
BitDefenderThetaGen:NN.ZexaF.34232.xi0@a4MaFWhb
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Farfli.AKZ
TrendMicro-HouseCallTROJ_GEN.R002C0RB622
ClamAVWin.Trojan.Vehidis-9882659-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ulise.149070
APEXMalicious
TencentTrojan.Win32.Lapka.bw
Ad-AwareGen:Variant.Ulise.149070
EmsisoftGen:Variant.Ulise.149070 (B)
DrWebTrojan.DownLoader12.21004
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0RB622
McAfee-GW-EditionBehavesLike.Win32.Dropper.ft
FireEyeGeneric.mg.80430ac574c9cd39
SophosML/PE-A + Mal/PdfExDr-B
IkarusTrojan.Win32.Servstar
AviraHEUR/AGEN.1225335
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Ulise.D2464E
GDataGen:Variant.Ulise.149070
CynetMalicious (score: 100)
Acronissuspicious
VBA32Trojan.Downloader
ALYacGen:Variant.Ulise.149070
AvastWin32:TrojanX-gen [Trj]
RisingBackdoor.Zegost!8.177 (CLOUD)
YandexTrojan.Agent!XrrgiBeZFzw
SentinelOneStatic AI – Malicious PE
FortinetW32/FARFLI.IZ!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Ulise.149070?

Ulise.149070 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment