Malware

Ulise.385712 removal

Malware Removal

The Ulise.385712 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.385712 virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Polish
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Ulise.385712?


File Info:

name: B763C3DA30CDB2E9078A.mlw
path: /opt/CAPEv2/storage/binaries/4c81a4c8008eb8f275e025f2f24e55edf262fb6eb1348bf5536a4dabcafefcc0
crc32: 570F0D11
md5: b763c3da30cdb2e9078a2350d8b352ab
sha1: bf97f72534233b8aaa473e7bf240fd2740229843
sha256: 4c81a4c8008eb8f275e025f2f24e55edf262fb6eb1348bf5536a4dabcafefcc0
sha512: a1a1d4d5c1b7d81a497e9bc590a6326dbf7c57c7596249a04699914f7a1e67bb09535e38647193a8325147ccd3d871e3479d2a90458ac13ae644ddd8d957d031
ssdeep: 12288:WAH5zKFnXSMshr66+m/dX5lrA3+UB6SuGgq6O/5lmvt888888888888W8888888X:WfXPshrcmNkOUB6SuGgq6U5l
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E7152933B2917C3FC12E5635ED67427CDC377A142A96489ADEFC9A0C1F386402D3A696
sha3_384: c74f5db556fc95617fc3131ca462633fb0c38d8b3cd8be1d3c791a7a780bf60d97487413ebc18ccdf87b7f4042cda1ba
ep_bytes: 558bec83c4f0b8fc824b00e81cb6f4ff
timestamp: 2010-09-19 08:36:23

Version Info:

0: [No Data]

Ulise.385712 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Ulise.385712
FireEyeGeneric.mg.b763c3da30cdb2e9
SkyhighBehavesLike.Win32.Infected.dh
ALYacGen:Variant.Ulise.385712
VIPREGen:Variant.Ulise.385712
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 7000000f1 )
BitDefenderGen:Variant.Ulise.385712
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.534233
BitDefenderThetaGen:NN.ZelphiF.36792.5OW@aGqxbUiO
VirITTrojan.Win32.OLG.AWNT
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/PSW.Tibia.NCX
APEXMalicious
KasperskyHEUR:Trojan.Win32.Agent.gen
AlibabaTrojanPSW:Win32/Tibia.b6e549d9
NANO-AntivirusTrojan.Win32.Scar.cqwwj
RisingMalware.Skeeyah!8.E947 (TFE:4:lM5OxLFTALM)
TACHYONBackdoor/W32.DP-Agent.934400
SophosMal/Generic-S
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.Siggen2.3029
ZillyaTrojan.Tibia.Win32.3559
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Ulise.385712 (B)
IkarusGen.Win32
JiangminTrojan/Genome.aejb
GoogleDetected
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Win32.Scar
KingsoftWin32.Trojan.Agent.gen
MicrosoftTrojanSpy:Win32/Skeeyah.A!rfn
ArcabitTrojan.Ulise.D5E2B0
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
GDataGen:Variant.Ulise.385712
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C1446345
McAfeeGenericR-HNJ!B763C3DA30CD
MAXmalware (ai score=94)
DeepInstinctMALICIOUS
VBA32BScope.Trojan.InstallMonster
Cylanceunsafe
PandaTrj/CI.A
TencentMalware.Win32.Gencirc.10b9e807
YandexTrojan.GenAsa!4lbNL7Kjzo0
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Tibia.NDB!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Ulise.385712?

Ulise.385712 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment