Malware

Ulise.229214 malicious file

Malware Removal

The Ulise.229214 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.229214 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Ulise.229214?


File Info:

crc32: E6B91FBB
md5: ee9d6377e78c46b80466de88443e6c5c
name: EE9D6377E78C46B80466DE88443E6C5C.mlw
sha1: 750be6b8957d37aa4ce6467675456e5c55369547
sha256: 8269fe8be1b0cdb1815461e3278783d757fd9e88c956ad2f09dd1721f1f32f65
sha512: 0a23107480d32d9fcd18fe72eeb6b8ef8501eef2b917cac54a59ece3faa77006a31b4bb5a486b874ba7f610b1ae77b8f9fe8e55568aa75796d342cccff52fc66
ssdeep: 12288:vi68nyQNCFK3tNvefQ8IyU9nl1lx9eIu:cygCQ9NoQbygl1lxUIu
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x6b64x6587x4ef6x4e4366x5192x9669x5c9bx7248x6743x6240x6709 - x76d7x7248x5fc5x7a76
FileVersion: 1.1.0.9
CompanyName: ChinaMS
Comments: x65e0x89c6HShieldx63d2x4ef6
ProductName: AspINet
ProductVersion: 1.1.0.9
FileDescription: 66x5192x9669x5c9bx7248x6743x6240x6709
Translation: 0x0804 0x04b0

Ulise.229214 also known as:

Elasticmalicious (high confidence)
CAT-QuickHealTrojan.MauvaiseRI.S5242236
ALYacGen:Variant.Ulise.229214
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Evo-gen [Susp]
CynetMalicious (score: 100)
BitDefenderGen:Variant.Ulise.229214
NANO-AntivirusTrojan.Win32.Antavmu.djakns
MicroWorld-eScanGen:Variant.Ulise.229214
Ad-AwareGen:Variant.Ulise.229214
SophosGeneric PUA HF (PUA)
ComodoTrojWare.Win32.QQTen.NAN@54s6on
BitDefenderThetaGen:NN.ZedlaF.34142.Tu8@aesp7Whb
McAfee-GW-EditionBehavesLike.Win32.Dropper.bh
FireEyeGeneric.mg.ee9d6377e78c46b8
EmsisoftGen:Variant.Ulise.229214 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.FA
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Emotet!ml
GDataWin32.Trojan.PSE.1THOGOA
AhnLab-V3Malware/Win32.Generic.C794758
McAfeeArtemis!EE9D6377E78C
MAXmalware (ai score=89)
MalwarebytesTrojan.MalPack.FlyStudio
RisingTrojan.Generic@ML.100 (RDML:FxDS+DhDVljrCVk9wuM7Iw)
YandexTrojan.GenAsa!D1aLFjmKKvg
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
AVGWin32:Evo-gen [Susp]
Paloaltogeneric.ml

How to remove Ulise.229214?

Ulise.229214 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment