Malware

Ulise.93623 malicious file

Malware Removal

The Ulise.93623 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.93623 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • A process created a hidden window
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Collects information to fingerprint the system

Related domains:

onlynew.xyz

How to determine Ulise.93623?


File Info:

crc32: FD55AC3E
md5: 9327d8a117e01b69e61a7690fed88818
name: app.exe
sha1: 394ab8c6728e2ffa1381e6afe3e52d15d44c6965
sha256: b7691c583984fe210bbc5ce7291dd2a80dd969d7b33e25863c99311303febbc3
sha512: b58962e98750064aa16e738b81ac76c39206ae6bb65c9ddf01a6cdd5bd2d979522bbb7a61544efe87ec0d6475965206d57459961214848d020acab25f113c47d
ssdeep: 98304:aQ8/Py9frbxvXKKkGxTVhG2+9Mpq6vQt/Ibt1YcyDgs:L8nylrZtjG9MpqINns
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Ulise.93623 also known as:

BkavW32.MarEmoteDE.Trojan
MicroWorld-eScanGen:Variant.Ulise.93623
FireEyeGeneric.mg.9327d8a117e01b69
McAfeeGenericRXAA-AA!9327D8A117E0
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0055983d1 )
BitDefenderGen:Variant.Ulise.93623
K7GWTrojan ( 0055983d1 )
CrowdStrikewin/malicious_confidence_60% (W)
TrendMicroTROJ_FRS.0NA103BT20
F-ProtW32/Glupteba.D.gen!Eldorado
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Emotet-7359783-0
GDataGen:Variant.Ulise.93623
KasperskyHEUR:Trojan-DDoS.Win32.Windigo.vho
AlibabaTrojan:Win32/RanumBot.b99a731f
NANO-AntivirusTrojan.Win32.Windigo.hdamwc
AegisLabTrojan.Win32.Fsysna.tr1H
RisingTrojan.RanumBot!8.112AC (CLOUD)
Ad-AwareGen:Variant.Ulise.93623
EmsisoftGen:Variant.Ulise.93623 (B)
ComodoMalware@#e262en6a68ol
F-SecureTrojan.TR/Spy.Gen8
DrWebTrojan.DownLoader33.8019
ZillyaTrojan.RanumBot.Win32.133
McAfee-GW-EditionBehavesLike.Win32.Ransomware.vh
SophosMal/Generic-S
IkarusTrojan.Win32.Ranumbot
CyrenW32/Glupteba.D.gen!Eldorado
JiangminTrojanDDoS.Windigo.oa
MaxSecureTrojan.Malware.74730673.susgen
AviraTR/Spy.Gen8
MAXmalware (ai score=100)
Antiy-AVLTrojan[DDoS]/Win32.Windigo
Endgamemalicious (high confidence)
ArcabitTrojan.Bandit
ZoneAlarmHEUR:Trojan-DDoS.Win32.Windigo.vho
MicrosoftTrojan:Win32/Occamy.C
BitDefenderThetaGen:NN.ZexaF.34098.@xW@aO1fOai
ALYacGen:Variant.Ulise.93623
VBA32TrojanDDoS.Windigo
MalwarebytesTrojan.Agent
PandaTrj/CI.A
ESET-NOD32a variant of Win32/RanumBot.B
TrendMicro-HouseCallTROJ_FRS.0NA103BT20
YandexTrojan.RanumBot!
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_98%
FortinetW32/Malicious_Behavior.VEX
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
Cybereasonmalicious.117e01
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.DDoS.a89

How to remove Ulise.93623?

Ulise.93623 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment