Malware

About “Ulise.461784” infection

Malware Removal

The Ulise.461784 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.461784 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Ulise.461784?


File Info:

name: AC6F7D7462833722F265.mlw
path: /opt/CAPEv2/storage/binaries/079ae7addc0e225bbdc8f324843c0a968d6a79d6da4f15d45779064ea85dcc0d
crc32: F31A9A08
md5: ac6f7d7462833722f265251d8c6a7916
sha1: a19b6e1882348bea0eea3d073545c2e1cc0c3cc6
sha256: 079ae7addc0e225bbdc8f324843c0a968d6a79d6da4f15d45779064ea85dcc0d
sha512: e7d04b823d18c45d237ee61b0bad4bca7292e1efe819435721e5a5117c391243a591bd9481c8714ba084f9085a27ff5866770ceeb4c3fda797033620568b8c61
ssdeep: 12288:wemk4JIeZAYTUBcZVFDr6HY/LC00iX9yFG4t:zmk4JzZAYTUBcZVFDr6HY/eW9yF1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13696AF13B2E540BED5A7253018B76F359ABEBD014634AE87A334FE5E1F72241D92930E
sha3_384: f2a23b13ebc83d24649bf39cbcce8a65b17f4c800ed155ce318e4ce46de00851aa7d1e8a1080872504c0c3814c2f1944
ep_bytes: 558bec6aff68f828cc00688822cb0064
timestamp: 2006-02-01 23:02:14

Version Info:

Comments:
CompanyName: Sysinternals - www.sysinternals.com
FileDescription: Rootkit detection utility
FileVersion: 1.70
InternalName:
LegalCopyright: Copyright (C) 2005-2006 Bryce Cogswell and Mark Russinovich
LegalTrademarks:
OriginalFilename:
PrivateBuild:
ProductName: Sysinternals Rootkitrevealer
ProductVersion: 1.70
SpecialBuild:
Translation: 0x0409 0x04b0

Ulise.461784 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ulise.461784
FireEyeGeneric.mg.ac6f7d7462833722
CAT-QuickHealTrojan.Swisyn.OD5
SkyhighBehavesLike.Win32.BadFile.rz
McAfeeGenericRXAA-AA!AC6F7D746283
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Ulise.461784
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
ClamAVWin.Malware.Swisyn-7008266-0
BitDefenderGen:Variant.Ulise.461784
AvastWin32:Malware-gen
SophosGeneric ML PUA (PUA)
EmsisoftGen:Variant.Ulise.461784 (B)
IkarusTrojan.Win32
MAXmalware (ai score=83)
GDataWin32.Trojan.PSE.OO7E69
GoogleDetected
VaristW32/Swisyn.R.gen!Eldorado
Antiy-AVLTrojan/Win32.Tiggre
ArcabitTrojan.Ulise.D70BD8
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Ulise.461784
VBA32Trojan.Zpevdo
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CAV24
RisingVirus.Sality/Debris!1.A12C (CLASSIC)
YandexTrojan.Vilsel!WBcIQHWidOY
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Swisyn.R!tr
AVGWin32:Malware-gen
Cybereasonmalicious.882348
DeepInstinctMALICIOUS

How to remove Ulise.461784?

Ulise.461784 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment