Malware

Ulise.321443 malicious file

Malware Removal

The Ulise.321443 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.321443 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Divehi
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
telegalive.top
toptelete.top

How to determine Ulise.321443?


File Info:

crc32: 8DE81940
md5: 120fa685331466c9c197f95d4f77e823
name: 120FA685331466C9C197F95D4F77E823.mlw
sha1: cf2f4082108716aadf865184b2f5aaeb81a67b51
sha256: f3776ae2c51d4cee236aceaf283d6bbc2a659eac6e60204ebb566fe91118144b
sha512: 2220d3f437b96d8a2be2da4f961b72f31782ff1ab5bbd69fd5310e7dc04d7af50e6e584a4d08c6bbadfc6d1444d0bda40a4cc376296f3e4da5d3030e2593d727
ssdeep: 12288:uP0BZt1xff6bFNdtpIIj+ZRSHgUUWmQGlMxku926oHREZYkCwR:XpSXpIBZFUfGOd92wC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x0522 0x023c

Ulise.321443 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (D)
Cybereasonmalicious.210871
BaiduWin32.Trojan.Kryptik.jm
CyrenW32/Kryptik.FQI.gen!Eldorado
SymantecPacked.Generic.620
ESET-NOD32a variant of Win32/GenKryptik.FNLQ
APEXMalicious
AvastWin32:DropperX-gen [Drp]
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderGen:Variant.Ulise.321443
MicroWorld-eScanGen:Variant.Ulise.321443
Ad-AwareGen:Variant.Ulise.321443
SophosML/PE-A + Troj/Krypt-DY
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.120fa685331466c9
SentinelOneStatic AI – Suspicious PE
MicrosoftRansom:Win32/StopCrypt.PN!MTB
GDataWin32.Trojan.BSE.WS9D4D
Acronissuspicious
McAfeeArtemis!120FA6853314
MAXmalware (ai score=82)
MalwarebytesTrojan.MalPack.GS
RisingMalware.Heuristic!ET#90% (RDMK:cmRtazpLPParGAjTye0Sa1gq6NyP)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Ulise.321443?

Ulise.321443 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment