Malware

Ulise.221279 removal tips

Malware Removal

The Ulise.221279 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.221279 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ulise.221279?


File Info:

crc32: F8DB09E7
md5: 9b7c966b356de357ff2b6c162f73a440
name: 9B7C966B356DE357FF2B6C162F73A440.mlw
sha1: c733b0215278069df83dcb4dd8b270948a039d00
sha256: b8e1801a29be09c3e40d633ed86649397ed8bb2bd83cd32109a83b3950599a4d
sha512: 94d85adeb3f3e354b5a24e871eee8c0ea769b315286914e0205d95d50e2f97f07d0f08048e52608fe0c07177ada3d3cf2139dea65011c97a05443e238c3b824e
ssdeep: 1536:EPVDzEr03JdW889w4A483bHAxFCer3GD8L0CmuJdr:2pVJgs4APzGFCerVBbdr
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ulise.221279 also known as:

K7AntiVirusTrojan ( 00576fb91 )
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.221279
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Copak.466d0ba1
K7GWTrojan ( 00576fb91 )
Cybereasonmalicious.152780
CyrenW32/Kryptik.DCC.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Packed.Copak-9853643-0
KasperskyHEUR:Trojan.Win32.Copak.vho
BitDefenderGen:Variant.Ulise.221279
NANO-AntivirusTrojan.Win32.Agent.ixszcw
MicroWorld-eScanGen:Variant.Ulise.221279
TencentMalware.Win32.Gencirc.10ce604c
Ad-AwareGen:Variant.Ulise.221279
SophosML/PE-A + Troj/Agent-BGZJ
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34266.emY@aqxLbnk
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0RG721
FireEyeGeneric.mg.9b7c966b356de357
EmsisoftGen:Variant.Ulise.221279 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.cls
AviraHEUR/AGEN.1142452
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASBOL.C686
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ArcabitTrojan.Ulise.D3605F
GDataGen:Variant.Ulise.221279
AhnLab-V3Malware/Gen.RL_Reputation.R367637
McAfeeGenericRXPG-FJ!9B7C966B356D
MAXmalware (ai score=88)
VBA32BScope.Trojan.Wacatac
MalwarebytesSpyware.PasswordStealer
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0RG721
RisingTrojan.Injector!1.C865 (CLASSIC)
IkarusTrojan.Kryptik
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HITO!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Ulise.221279?

Ulise.221279 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment