Malware

About “Ulise.365500” infection

Malware Removal

The Ulise.365500 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.365500 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Ulise.365500?


File Info:

name: F405B5B727160A16CE42.mlw
path: /opt/CAPEv2/storage/binaries/bc948a7382cf5ffc2784711c25e9aada8066098dd34afcfef11bf8b3a7b4b4a4
crc32: 3EF64B63
md5: f405b5b727160a16ce42f65312a83be6
sha1: 188cc215d341daaa88d1353b1d6794414653de39
sha256: bc948a7382cf5ffc2784711c25e9aada8066098dd34afcfef11bf8b3a7b4b4a4
sha512: 98e100b31daac2813434c5d9ec41aa92825f6b0f6d0cad1a67f3260c5b7def205cb935d3dd9fd40b2f6642f9d90bfc8cd684b8acaab47d596a2968e2ae49de4d
ssdeep: 3072:4LB9LDGcHUXNEBk11ww2t4mD941p6IlWjnK5:47Ktd+k11wNimD94PnlWj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103B33A1AF629C015C25087BC1FA59A794DE2EF758AD30EC7334CEFBC097A791682E215
sha3_384: c627c18d6ee1c0f055dfb5dfd5f2d7ac234d8bc3c225fbf7f73fd4f7e45f2298f2f602428211543770c7f2ca4ff8d82b
ep_bytes: 558bec6aff68a88f400068c870400064
timestamp: 2022-05-17 06:04:24

Version Info:

FileDescription: MIDIDevDemo v2 MFC Application
FileVersion: 1, 0, 0, 1
InternalName: MIDIDevDemo v2
LegalCopyright: Copyright (C) 2002
OriginalFilename: MIDIDevDemo v2.EXE
ProductName: MIDIDevDemo v2 Application
ProductVersion: 1, 0, 0, 1
Translation: 0x0409 0x04b0

Ulise.365500 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lotok.m!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ulise.365500
FireEyeGeneric.mg.f405b5b727160a16
CAT-QuickHealTrojan.Ghostratcrypt
SkyhighGenericRXTK-KM!F405B5B72716
McAfeeGenericRXTK-KM!F405B5B72716
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Ulise.365500
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005565491 )
BitDefenderGen:Variant.Ulise.365500
K7GWTrojan ( 005565491 )
Cybereasonmalicious.5d341d
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EGZV
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Gh0stRAT-9955419-1
KasperskyHEUR:Backdoor.Win32.Lotok.gen
AlibabaBackdoor:Win32/GhostRatCrypt.07283a00
NANO-AntivirusTrojan.Win32.Lotok.jpbnak
ViRobotTrojan.Win.Z.Lotok.110592
RisingBackdoor.Shellex!1.E4E9 (CLASSIC)
TACHYONBackdoor/W32.Lotok.110592.D
SophosTroj/Farfli-DZ
F-SecureTrojan.TR/Injector.wqufb
DrWebTrojan.MulDrop20.8056
ZillyaTrojan.Injector.Win32.1538045
TrendMicroTROJ_GEN.R011C0DK723
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Ulise.365500 (B)
IkarusTrojan.Win32.Injector
GDataWin32.Trojan.PSE.13T9OSM
JiangminBackdoor.Lotok.avj
VaristW32/ABRisk.YQOD-4345
AviraTR/Injector.wqufb
Antiy-AVLTrojan[Backdoor]/Win32.Lotok
ArcabitTrojan.Ulise.D593BC
ZoneAlarmHEUR:Backdoor.Win32.Lotok.gen
MicrosoftTrojan:Win32/GhostRatCrypt.GA!MTB
GoogleDetected
AhnLab-V3Backdoor/Win.Zegost.R565610
ALYacGen:Variant.Ulise.365500
MAXmalware (ai score=82)
DeepInstinctMALICIOUS
VBA32BScope.TrojanPSW.Cabal
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R011C0DK723
TencentBackdoor.Win32.Lotok.zc
YandexTrojan.Injector!gs7FJdNXAFU
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.102820574.susgen
FortinetW32/Farfli.BSIK!tr
AVGWin32:RATX-gen [Trj]
AvastWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Ulise.365500?

Ulise.365500 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment