Malware

Ulise.88128 malicious file

Malware Removal

The Ulise.88128 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Ulise.88128 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Executed a process and injected code into it, probably while unpacking
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Ulise.88128?


File Info:

crc32: FA2FDF93
md5: a89f7bb25c83c1d367abc47ede85db2c
name: file2.exe
sha1: fd393df6409825e611448914151036a70983a56e
sha256: 6621af4621a74851382dd5cc57977047c90723826e4202b727c420ca912c2c25
sha512: 05d22e9abf863db1f7d0ed3e0a0706bbea92a1d1379359132d83f88ecf679c38648430ad3fd38f7ecee77548ddeac2c6b3dfb33fae1679a47b96d432b3744c5a
ssdeep: 12288:kAJQQbL8HkZqmbdK7u3PsEYdjmloClAU7v0:kAGEykZqm4APfYdeoUAav0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ulise.88128 also known as:

MicroWorld-eScanGen:Variant.Ulise.88128
FireEyeGeneric.mg.a89f7bb25c83c1d3
McAfeeFareit-FQC!A89F7BB25C83
MalwarebytesSpyware.PasswordStealer
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 0055bcbb1 )
BitDefenderGen:Variant.Ulise.88128
K7GWTrojan ( 0055bcbb1 )
Cybereasonmalicious.640982
TrendMicroTrojanSpy.Win32.LOKI.SMAD1.hp
BitDefenderThetaGen:NN.ZelphiF.32253.LGW@aiJgiGpi
F-ProtW32/Injector.IOY
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTrojanSpy.Win32.LOKI.SMAD1.hp
Paloaltogeneric.ml
GDataGen:Variant.Ulise.88128
KasperskyHEUR:Trojan.Win32.Kryptik.gen
AlibabaTrojan:Win32/GenKryptik.c831e209
APEXMalicious
RisingTrojan.GenKryptik!8.AA55 (TFE:5:WonrEgPV5sG)
Ad-AwareGen:Variant.Ulise.88128
SophosMal/Fareit-V
ComodoMalware@#mgmbqslq7gc3
F-SecureTrojan.TR/Crypt.XPACK.ergpi
DrWebTrojan.Inject3.31009
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Fareit.hm
CyrenW32/Injector.TDEA-8295
JiangminTrojan.Kryptik.yz
WebrootW32.Kryptik
AviraTR/Crypt.XPACK.ergpi
MAXmalware (ai score=100)
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D15840
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
MicrosoftTrojan:Win32/Lokibot.CS!MTB
AhnLab-V3Win-Trojan/Delphiless.Exp
ALYacSpyware.LokiBot
ESET-NOD32a variant of Win32/Injector.EJBT
IkarusTrojan.Win32.Injector
FortinetW32/GenKryptik.CJOK!tr
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.469

How to remove Ulise.88128?

Ulise.88128 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment