Malware

Ulise.320320 removal instruction

Malware Removal

The Ulise.320320 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.320320 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Spanish (Paraguay)
  • The binary likely contains encrypted or compressed data.
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ulise.320320?


File Info:

crc32: BC23669B
md5: e72212ee3bb9b2fc6d0fd799e1e92709
name: E72212EE3BB9B2FC6D0FD799E1E92709.mlw
sha1: f14346a1e5e59efa6a26a5b21321916583c5945d
sha256: 6740a23ecb7752d555d6818505098f913c438367dbfb70c70b7cabafa4253909
sha512: 67aef8e54ee466e26998dd80587c87fb1fc98765922667e59a149e52fb00652928abc0b33445aaf47cc7e30843d06b3668824f8ef84684a141f3c6d493cd5602
ssdeep: 6144:oqZjKqgWjwKfPKDYtwtHOLJmFLVXZRFkI1K:FgWjFnKDYtwtHmmF5XlA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x0522 0x023c

Ulise.320320 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0058a4801 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader43.63824
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Raccrypt
ALYacGen:Variant.Ulise.320320
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaMalware:Win32/km_24afe.None
K7GWTrojan ( 0058a4801 )
BaiduWin32.Trojan.Kryptik.jm
CyrenW32/Kryptik.FPK.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Kryptik.HNGY
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Malware.Generic-9908111-0
KasperskyHEUR:Trojan.Win32.Strab.gen
BitDefenderGen:Variant.Ulise.320320
NANO-AntivirusTrojan.Win32.Wirenet.gxyoif
MicroWorld-eScanGen:Variant.Ulise.320320
TencentWin32.Trojan.Ulise.Airi
Ad-AwareGen:Variant.Ulise.320320
SophosMal/Generic-R + Troj/Krypt-DY
Comodofls.noname@0
TrendMicroTrojan.Win32.SMOKELOADER.YXBKNZ
McAfee-GW-EditionBehavesLike.Win32.Emotet.fm
FireEyeGeneric.mg.e72212ee3bb9b2fc
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Strab.gt
WebrootW32.SMOKELOADER.YXBKNZ
AviraTR/Crypt.Agent.gucqa
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Raccoon.AD!MTB
GDataGen:Variant.Ulise.320320
AhnLab-V3Ransomware/Win.Stop.R449632
Acronissuspicious
McAfeePacked-GDT!E72212EE3BB9
MAXmalware (ai score=83)
VBA32Trojan.Agent
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SMOKELOADER.YXBKNZ
RisingTrojan.Generic@ML.86 (RDML:jkc+kk5VnmwjHGER27ukwg)
YandexTrojan.Strab!r+2aAPvrucM
IkarusTrojan.Agent
FortinetW32/GenKryptik.FNRJ!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Ulise.320320?

Ulise.320320 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment