Malware

Ulise.318774 removal

Malware Removal

The Ulise.318774 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.318774 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • A process created a hidden window
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Collects information to fingerprint the system

Related domains:

www.GVGqCHxQll.com
zipansion.com
usfinf.net

How to determine Ulise.318774?


File Info:

crc32: 04D7D8E4
md5: 7d77eaab60c2c25e165574cf633fea40
name: 7D77EAAB60C2C25E165574CF633FEA40.mlw
sha1: 5422365b8ae5da6b1c333cc16e29800f9002ac29
sha256: 52a87100d8af0b431cfa1c41cad1c86d13849afe64c6714fa03a9a22452baab0
sha512: eb3f929ee17fcd709e05ad63518204fa6f564f9ef8ecb26c3e6511d61c4484360073a6887dec8498c61a754dc5d394b7f104c483fb4f665767b801da0f311fd5
ssdeep: 6144:RgfC5bU70Hxc+bF+XtSzbcFw9iSlgV+SMnJte9:4qH6+pWwf4w9irVPMJE
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ulise.318774 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004bcce41 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.190279
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Injector.9ec701b6
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.b60c2c
CyrenW32/S-9ab3d304!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ulise.318774
MicroWorld-eScanGen:Variant.Ulise.318774
TencentWin32.Trojan.Generic.Akfn
Ad-AwareGen:Variant.Ulise.318774
SophosML/PE-A + Mal/TibsPak
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaAI:Packer.9B1F5B571E
VIPREPacker.NSAnti.Gen (v)
TrendMicroTROJ_GEN.R035C0RFA21
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.7d77eaab60c2c25e
EmsisoftGen:Variant.Ulise.318774 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.guttl
AviraTR/Crypt.ULPM.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASBOL.C687
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataGen:Variant.Ulise.318774
TACHYONTrojan/W32.Agent.250368.RC
AhnLab-V3Malware/Win32.RL_Generic.R282173
McAfeeGenericRXAA-FA!7D77EAAB60C2
MAXmalware (ai score=89)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R035C0RFA21
RisingTrojan.Injector!1.C865 (CLASSIC)
YandexTrojan.Agent!g6cVeThVelk
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Ulise.318774?

Ulise.318774 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment