Malware

Ulise.221549 (file analysis)

Malware Removal

The Ulise.221549 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.221549 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Creates a copy of itself

How to determine Ulise.221549?


File Info:

crc32: 5469FDF0
md5: 5df782ce016cd508728153dd2b3f8ef9
name: 5DF782CE016CD508728153DD2B3F8EF9.mlw
sha1: f7e27db6bc82a1143712097b83191426a89be2c9
sha256: 71d7c879542000bc3b94e366eb77edda61b0aff6bd552f5f190815acd5f46c09
sha512: 56cb434139723da4ecaab8167902aec0a4c5bde55d4b7c141cd6a1a8057f434550770fc4586c92042a38b887e3dbb3d2e760dabac685edc9e5dca69e97f24351
ssdeep: 24576:DpeUEs+LGwNZaZ22tGUAIy/51HW3vK9zAAiEjU3gPQHSJdD:DpeUEsoT/a7tGUAIUW3vcAmj3+k
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ulise.221549 also known as:

K7AntiVirusTrojan ( 0057ffc71 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.221549
CylanceUnsafe
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.6bc82a
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderGen:Variant.Ulise.221549
MicroWorld-eScanGen:Variant.Ulise.221549
TencentTrojan.Win32.Coinminer.yi
Ad-AwareGen:Variant.Ulise.221549
SophosMal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34236.XmW@ayf56hc
VIPREPacker.NSAnti.Gen (v)
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.5df782ce016cd508
EmsisoftGen:Variant.Ulise.221549 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.hadtb
AviraTR/Crypt.ULPM.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASBOL.C689
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Ulise.221549
AhnLab-V3Trojan/Win.Generic.C4631329
McAfeeGenericRXAA-FA!5DF782CE016C
MAXmalware (ai score=88)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt.UPX
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.D12D (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]

How to remove Ulise.221549?

Ulise.221549 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment