Malware

About “Ulise.85448” infection

Malware Removal

The Ulise.85448 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.85448 virus can do?

  • A process attempted to delay the analysis task.
  • Attempts to connect to a dead IP:Port (1335 unique times)
  • A process created a hidden window
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Creates a copy of itself

How to determine Ulise.85448?


File Info:

crc32: 166ADDAF
md5: 01a9b1f9a9db526a54a64e39a605dd30
name: c.dat
sha1: a436e3f5a9ee5e88671823b43fa77ed871c1475b
sha256: 9a1365c42f4aca3e9c1c5dcf38b967b73ab56e4af0b4a4380af7e2bf185478bc
sha512: 5e9bb40b47c3a1a036ede25b3d1b7bbb4da2f048145fa1f3aaeccca11df88c108429b5bb859ab6da888c9e8ee6da2b1040d7341426e5776dbf5c3fa8ab9dd90f
ssdeep: 49152:HukzsCYr5TZNnFiL/FUEA0x2YBp4j8VThthc48Lezv:Ok4CwJsL/HAFYBp4jMM48Le
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Ulise.85448 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanGen:Variant.Ulise.85448
FireEyeGeneric.mg.01a9b1f9a9db526a
Qihoo-360HEUR/QVM18.1.851B.Malware.Gen
CylanceUnsafe
SangforMalware
BitDefenderGen:Variant.Ulise.85448
Cybereasonmalicious.5a9ee5
BitDefenderThetaGen:NN.ZexaF.34080.koqaaevOgYoi
APEXMalicious
AvastWin32:Vitro
GDataGen:Variant.Ulise.85448
KasperskyTrojan.Win32.Eb.acs
TencentWin64.Risk.Riskware.Eer
Ad-AwareGen:Variant.Ulise.85448
EmsisoftGen:Variant.Ulise.85448 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Backdoor.vc
Trapminemalicious.high.ml.score
CMCVirus.Win32.Sality!O
JiangminTrojan.Crypmod.vn
AviraTR/Crypt.XPACK.Gen
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D14DC8
ZoneAlarmTrojan.Win32.Eb.acs
MicrosoftTrojan:Win32/Wacatac.B!ml
Acronissuspicious
ALYacGen:Variant.Ulise.85448
MAXmalware (ai score=85)
ESET-NOD32a variant of Win64/Riskware.Mimikatz.B
TrendMicro-HouseCallTROJ_GEN.R020H09AB20
SentinelOneDFI – Malicious PE
AVGWin32:Vitro
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Ulise.85448?

Ulise.85448 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment