Malware

Ulise.303221 removal instruction

Malware Removal

The Ulise.303221 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.303221 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Ulise.303221?


File Info:

crc32: 042A1F97
md5: a7b18b5b15c95579afede36feed6d767
name: A7B18B5B15C95579AFEDE36FEED6D767.mlw
sha1: c9a658afac6d5c8fc047ad3b2fecabf8157c9780
sha256: fadfb32cc9e91985e82773df23f3bdb25254fa98e28d96fdb143f85162b581fc
sha512: f16042af314bbbd682e5286a1048d1bde5c29bbe370c0277e39ce75713dfa3b0839c1c6a1c1c984f823e39ea95c6fbcd101809d1f04d113ffd945c5a68abb9f2
ssdeep: 12288:PzKuanM08vS23Z9mVI8eyJQzMAHmRghj9HuVFraLPEh6aU1g:7JeV23neAGR4pHuVFKPl1
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ulise.303221 also known as:

K7AntiVirusTrojan ( 0057ffc71 )
LionicRiskware.Win32.BitCoinMiner.1!c
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.303221
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Pacex.Gen
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
ClamAVWin.Trojan.Coinminer-9832789-0
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderGen:Variant.Ulise.303221
MicroWorld-eScanGen:Variant.Ulise.303221
TencentTrojan.Win32.Coinminer.yi
Ad-AwareGen:Variant.Ulise.303221
SophosMal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34266.XmW@aCmAEMk
TrendMicroTROJ_GEN.R002C0DIR21
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGen:Variant.Ulise.303221
EmsisoftGen:Variant.Ulise.303221 (B)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.BitCoinMiner.vpk
AviraTR/CoinMiner.jxdly
Antiy-AVLTrojan/Generic.ASBOL.C68B
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
GDataGen:Variant.Ulise.303221
AhnLab-V3Malware/Gen.RL_Reputation.R366930
McAfeeGenericRXAA-AA!A7B18B5B15C9
MAXmalware (ai score=82)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DIR21
RisingTrojan.Kryptik!1.D12D (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.74654884.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
Paloaltogeneric.ml

How to remove Ulise.303221?

Ulise.303221 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment