Malware

How to remove “Ulise.256564”?

Malware Removal

The Ulise.256564 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.256564 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Ulise.256564?


File Info:

name: B6EA44F839476DC671FD.mlw
path: /opt/CAPEv2/storage/binaries/d1183245b93ad22e6f7e9109740eeddf847b79b76fc28262eca41c2a58f2a309
crc32: 43C5A164
md5: b6ea44f839476dc671fd0f81eb3b393a
sha1: cf343a3f12d79dcbc44022f403c422426e248061
sha256: d1183245b93ad22e6f7e9109740eeddf847b79b76fc28262eca41c2a58f2a309
sha512: 40f1d16a02db9c4b0535ad24ea82b4340cc6616a99f9827f8cb07e09ca56261b688bb703b0512678e437f7a9787b72b6235f5e4d92a9b0ae33b6f0a40752e7d2
ssdeep: 12288:zehVb6FqWW9vvqveFSRVtvrvGviP3S8gJSt7klQ6/5s2f8Kfwi6Pu0YzxCB:zIeFwvvUeoRVtTqiPknQO18KfT6P4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12945AE65A591AC3BC033BDB9992F46F0B81AEB543E247C613ED44E0C6B7B2423E25753
sha3_384: 6e6479ab85aa92c4c3a0526f439f43636a2b5aca97516f4cab6f9811d186218f880bd0da6e81e4eef72aed65491d6b8e
ep_bytes: 558bec83c4f0b8b05f4800e894f1f7ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Ulise.256564 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Ulise.256564
FireEyeGeneric.mg.b6ea44f839476dc6
McAfeePacked-FAW!B6EA44F83947
CylanceUnsafe
VIPREGen:Variant.Ulise.256564
K7GWTrojan ( 700001211 )
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZelphiF.34606.mLW@augrq2ai
CyrenW32/Trojan.WKMF-0834
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
TrendMicro-HouseCallTSPY_HPLOKI.SM1
ClamAVWin.Malware.Ctwf-6824130-0
KasperskyHEUR:Trojan.Win32.Ekstak.gen
BitDefenderGen:Variant.Ulise.256564
NANO-AntivirusTrojan.Win32.Stealer.extkmo
CynetMalicious (score: 100)
APEXMalicious
Ad-AwareGen:Variant.Ulise.256564
SophosGeneric ML PUA (PUA)
DrWebTrojan.PWS.Stealer.18836
ZillyaBackdoor.Androm.Win32.49320
TrendMicroTSPY_HPLOKI.SM1
McAfee-GW-EditionPacked-FAW!B6EA44F83947
EmsisoftGen:Variant.Ulise.256564 (B)
IkarusTrojan-Spy.LokiBot
GDataGen:Variant.Ulise.256564
JiangminBackdoor.Androm.wve
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASMalwS.3C54
ArcabitTrojan.Ulise.D3EA34
ZoneAlarmHEUR:Trojan.Win32.Ekstak.gen
MicrosoftTrojan:Win32/Wacatac.A!ml
GoogleDetected
ALYacGen:Variant.Ulise.256564
MalwarebytesMalware.AI.616791078
AvastWin32:Adware-gen [Adw]
RisingSpyware.Noon!8.E7C9 (TFE:4:MsvvUHIMWVM)
SentinelOneStatic AI – Suspicious PE
FortinetW32/GenKryptik.EKLE!tr
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.f12d79

How to remove Ulise.256564?

Ulise.256564 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment