Malware

What is “Ulise.323839”?

Malware Removal

The Ulise.323839 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.323839 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Ulise.323839?


File Info:

name: 81F8746A46F44F972D3D.mlw
path: /opt/CAPEv2/storage/binaries/222b0b4a9805a291eb8765292a436571068abe414c48e02760cbd1ae2ee0315d
crc32: 3E1CCF70
md5: 81f8746a46f44f972d3ddb23f52ff7d6
sha1: 7f3d21ab81d8575067ee5cbb7046604e3f39a805
sha256: 222b0b4a9805a291eb8765292a436571068abe414c48e02760cbd1ae2ee0315d
sha512: 436db470fe7a0e4347e95e2a1201c9b6fc9740986f4ade67ba210391e73ecd656ac726e2081abc7fd9f65f0be2de319618666b4b400ee64a57604a6bf07f414b
ssdeep: 6144:qkTS7cd4KDNa4pk5XEvN6nAhz1K8HQ9ukho5Y7e:Be4d4sE4paU6nAx8aK1i
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11886CF02B2D280BAD4A61174187BAF3D9ABDBD464621CA5BE370FE6F5D32740D42D31E
sha3_384: e27d25cbb5f6ca008397168cf410776c42b2785da663323d5fd48b02a22b153648d169b8d071641ddd57c696101791c0
ep_bytes: 558bec6aff68f878bf00688872be0064
timestamp: 2006-02-02 03:17:11

Version Info:

Comments:
CompanyName: Sysinternals - www.sysinternals.com
FileDescription: Rootkit detection utility
FileVersion: 1.70
InternalName:
LegalCopyright: Copyright (C) 2005-2006 Bryce Cogswell and Mark Russinovich
LegalTrademarks:
OriginalFilename:
PrivateBuild:
ProductName: Sysinternals Rootkitrevealer
ProductVersion: 1.70
SpecialBuild:
Translation: 0x0409 0x04b0

Ulise.323839 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ulise.323839
FireEyeGeneric.mg.81f8746a46f44f97
CAT-QuickHealTrojan.Swisyn.OD5
ALYacGen:Variant.Ulise.323839
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b81d85
CyrenW32/Swisyn.R.gen!Eldorado
SymantecML.Attribute.HighConfidence
BitDefenderGen:Variant.Ulise.323839
NANO-AntivirusTrojan.Win32.Swisyn.eywcyw
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Ulise.323839
SophosML/PE-A
EmsisoftGen:Variant.Ulise.323839 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.14A82VQ
eGambitUnsafe.AI_Score_100%
MAXmalware (ai score=80)
ArcabitTrojan.Ulise.D4F0FF
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
MalwarebytesMalware.AI.3621182947
APEXMalicious
RisingMalware.Heuristic!ET#88% (RDMK:cmRtazoFLEBNU4Qqz3rcz+9NdXmt)
IkarusTrojan.Win32.Swisyn
FortinetW32/Swisyn.R!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Ulise.323839?

Ulise.323839 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment