Malware

Ulise.328536 removal guide

Malware Removal

The Ulise.328536 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.328536 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Ukrainian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Ulise.328536?


File Info:

name: E8FBE55A18FA51067F92.mlw
path: /opt/CAPEv2/storage/binaries/73a582e3c70c118c4d24a7913e4d992126cbf1d2800ac0f28bd7759935508eae
crc32: A39B8C73
md5: e8fbe55a18fa51067f9276077f7478ff
sha1: bafd555ff03ef63fdb6d858856583b6062da1999
sha256: 73a582e3c70c118c4d24a7913e4d992126cbf1d2800ac0f28bd7759935508eae
sha512: 0b1bb941b961ab35b4c59dfd0d1394427f583c733383f02e6d53754c76224c163a644ebc2a8536e0d9066b448537710bf4b6fc5a7984f7df13adcb4dec9c50a4
ssdeep: 12288:LifwqD87CMIXANl8xejWMV7fYssugarwNaBj9J0as7QxH2/e5VEBptRarOiaroLe:Lil5wsxejMPuc8Qa+g2qVet1
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T163258D32F6C0C437D5A22B79CC5BC1D55426BE242D389C477AE92F0CAF7928279262D7
sha3_384: 8f86ee3468fad93ce14bb1de0a8840c707984fda7425bf00c72d44057a9d29c037a15bafef510c03e8c4c9178924075c
ep_bytes: 558becb9260000006a006a004975f951
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName: Click And Deploy (Pte. Ltd.)
FileDescription: AlertDispatcher Console
FileVersion: 8.93.845.0
InternalName: AlertDispatcher
LegalCopyright: Click And Deploy (Pte. Ltd.)
OriginalFilename:
PrivateBuild:
ProductName: AlertDispatcher
ProductVersion: 8.93.845.0
Translation: 0x4809 0x04b0

Ulise.328536 also known as:

LionicTrojan.Win32.Fragtor.4!c
MicroWorld-eScanGen:Variant.Ulise.328536
FireEyeGen:Variant.Ulise.328536
CAT-QuickHealTrojan.FugrafaIH.S24964204
ALYacGen:Variant.Ulise.328536
MalwarebytesMalware.AI.2506916259
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CLD21
BitDefenderGen:Variant.Ulise.328536
Ad-AwareGen:Variant.Ulise.328536
EmsisoftGen:Variant.Ulise.328536 (B)
McAfee-GW-EditionBehavesLike.Win32.Dropper.dh
SophosGeneric PUA LK (PUA)
IkarusTrojan.Win32
MAXmalware (ai score=87)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftProgram:Win32/Uwamson.A!ml
GDataWin32.Trojan.PSE.1JV1WGA
CynetMalicious (score: 100)
McAfeeGenericRXAA-AA!E8FBE55A18FA
VBA32BScope.Trojan.Sabsik.FL
APEXMalicious
FortinetW32/PossibleThreat
PandaTrj/Genetic.gen

How to remove Ulise.328536?

Ulise.328536 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment