Malware

Ulise.348783 (file analysis)

Malware Removal

The Ulise.348783 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.348783 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Ulise.348783?


File Info:

name: B711F647197374788E9A.mlw
path: /opt/CAPEv2/storage/binaries/392a222cb94b49e3b807ab4d4affd56f73c7ce6f0f222bc74cfa68064d0b7567
crc32: C2552870
md5: b711f647197374788e9afd9f18bfe436
sha1: 86f590278e1336aef36317282c3e2ef9c43782f4
sha256: 392a222cb94b49e3b807ab4d4affd56f73c7ce6f0f222bc74cfa68064d0b7567
sha512: 5daa6e1508df7068f369cfb8faa635938eff239890baac155c6dcb21ea8a8a27cad869c378e55d5c399425c0cd5cab1b3566d5d533f838dfcf73837cce4daab7
ssdeep: 49152:zCIabjKoh9WS/IabjKoh9WsqZydB3I94z8xmN3Aek03noj45wlDTC9VfWB:+IabjKoh9WiIabjKoh9WsMWCYeUJF3n6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FFD5F51EEF009D31C51905B26996A35E19A87CA087130BC7F3447E9DFBB1FD06BB6226
sha3_384: e247a293369bb35853c004983e501ae7cab981f02d502ac803c419e363867fc33ee089bf25e964ee9b40e44074325638
ep_bytes: 80000080808000c0c0c0000000ff0000
timestamp: 2007-08-17 12:43:04

Version Info:

0: [No Data]

Ulise.348783 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ulise.348783
ALYacGen:Variant.Ulise.348783
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaVirus:Win32/VB.fb971b49
K7GWP2PWorm ( 000043a81 )
K7AntiVirusP2PWorm ( 000043a81 )
CyrenW32/Autorun.CS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/VB.NAR
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Bulz-9865941-0
BitDefenderGen:Variant.Ulise.348783
AvastWin32:Malware-gen
TencentWin32.Virus.Vb.Hdhl
EmsisoftGen:Variant.Ulise.348783 (B)
VIPREGen:Variant.Ulise.348783
McAfee-GW-EditionBehavesLike.Win32.Generic.vm
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.b711f64719737478
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Ulise.348783
JiangminPacked.Krap.gvwv
GoogleDetected
Antiy-AVLTrojan/Win32.VB
ArcabitTrojan.Ulise.D5526F
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.KJ.R476820
Acronissuspicious
McAfeeGenericRXRZ-KJ!B711F6471973
MAXmalware (ai score=89)
VBA32Trojan.Sdum
RisingVirus.VB!8.B0D (CLOUD)
IkarusVirus.Win32.VB
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Autorun.DB!tr
BitDefenderThetaGen:NN.ZexaE.36196.VwZ@au6yu7d
AVGWin32:Malware-gen
Cybereasonmalicious.78e133
DeepInstinctMALICIOUS

How to remove Ulise.348783?

Ulise.348783 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment