Malware

About “Ulise.262185” infection

Malware Removal

The Ulise.262185 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.262185 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

trick.matchoatmeal.icu
fuss.wavesfork.online

How to determine Ulise.262185?


File Info:

crc32: 56A8B437
md5: cf2b02dbd1979805f8b97689173a02e6
name: CF2B02DBD1979805F8B97689173A02E6.mlw
sha1: 4156beb5ba75eef73f321e120d5fa6fa02e94694
sha256: 24924fc5101236424911467d2d87ee72e249d8dff6d0f13ef42b99b76c0267b4
sha512: 247700645c43213c9d09b5193e364f79c571ff0ac17c37610d86d06d86c1726d64e68c6757a5a346532d07106f99c28e4cba603c8c634f6fb5e4e707cd2cf33b
ssdeep: 24576:USzOkayV5hOG9MwW/M5t97Ye5AjPhIJE66JWt0QkA2vxR:7zOP1GYFzhIGDj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Ehahinepepi herisehuinisgo
InternalName: OSNOYSECOTSIPA.EXE
FileVersion: 2.9.1.6
CompanyName: xa9Ehahinepepi herisehuinisgo
ProductName: OSNOYSECOTSIPA
ProductVersion: 2.9.1.6
OriginalFilename: osnoysecotsipa.exe
Translation: 0x0409 0x04e4

Ulise.262185 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005410101 )
LionicTrojan.Win32.Razy.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17867
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.262185
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.72714
AlibabaAdWare:Win32/StartSurf.f43fb24e
K7GWTrojan ( 005410101 )
Cybereasonmalicious.bd1979
CyrenW32/S-2284c5eb!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.GMFH
APEXMalicious
AvastWin32:LoadMoney-ATT [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderGen:Variant.Ulise.262185
NANO-AntivirusTrojan.Win32.Vittalia.fjugnr
MicroWorld-eScanGen:Variant.Ulise.262185
TencentWin32.Adware.Startsurf.Szvf
Ad-AwareGen:Variant.Ulise.262185
SophosGeneric PUA EB (PUA)
ComodoMalCrypt.Indus!@1qrzi1
BitDefenderThetaGen:NN.ZexaF.34266.5w0@a4R8Zspi
McAfee-GW-EditionBehavesLike.Win32.AutoRun.vz
FireEyeGeneric.mg.cf2b02dbd1979805
EmsisoftGen:Variant.Ulise.262185 (B)
SentinelOneStatic AI – Malicious PE
JiangminPacked.Krap.ggvw
AviraHEUR/AGEN.1117621
Antiy-AVLTrojan/Generic.ASMalwS.2A63124
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Ulise.D40029
GDataGen:Variant.Ulise.262185
AhnLab-V3PUP/Win32.BundleInstaller.R242330
Acronissuspicious
McAfeePacked-FKC!CF2B02DBD197
MAXmalware (ai score=85)
VBA32BScope.Trojan.Fuerboos
MalwarebytesAdware.DLAssistant
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!ukRMQEHwfYk
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GMFB!tr
AVGWin32:LoadMoney-ATT [Adw]
Paloaltogeneric.ml

How to remove Ulise.262185?

Ulise.262185 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment