Malware

Should I remove “Ulise.95262 (B)”?

Malware Removal

The Ulise.95262 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.95262 (B) virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Network activity detected but not expressed in API logs
  • Detects VirtualBox through the presence of a file
  • Detects VMware through the presence of a file
  • Anomalous binary characteristics

How to determine Ulise.95262 (B)?


File Info:

crc32: 1E269B50
md5: 5bb51520299658a1f658223c4e227816
name: latviame.exe
sha1: bb4ebb15acdf6a2c2640117a7e3bf4373dfc0a93
sha256: 0232211db7118f3a2b06373e14d4a4b30137f175292cb119b8f1850e8766d87a
sha512: a8074bfe818ab618fcbe7d87e7eb55dfa03e770cdf853ef5d5f6893714f7134772f783aa0ee1195d6fbb9610053b0ade39352f8914a1c9d019fcef0a7b3c8abb
ssdeep: 24576:2iTTMC2V6ADFSm68YV3CDuiQrH9ctq4pe8:2i3ngYV3Sui49cA4J
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ulise.95262 (B) also known as:

MicroWorld-eScanGen:Variant.Ulise.95262
FireEyeGeneric.mg.5bb51520299658a1
CAT-QuickHealBackdoor.Androm
Qihoo-360Win32/Backdoor.650
McAfeeRDN/Generic PWS.y
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Androm.m!c
SangforMalware
K7AntiVirusTrojan ( 0055e8ff1 )
BitDefenderGen:Variant.Ulise.95262
K7GWTrojan ( 0055e8ff1 )
Cybereasonmalicious.5acdf6
TrendMicroTSPY_HPLOKI.SMBD
BitDefenderThetaGen:NN.ZelphiF.34080.YGW@aGeN4mai
F-ProtW32/Injector.IRM
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Trojan-gen
GDataGen:Variant.Ulise.95262
KasperskyHEUR:Backdoor.Win32.Androm.gen
AlibabaBackdoor:Win32/Androm.942bdfbb
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
Ad-AwareGen:Variant.Ulise.95262
SophosMal/Fareit-V
F-SecureTrojan.TR/Injector.ycxzc
DrWebTrojan.PWS.Stealer.18836
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Fareit.cc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Ulise.95262 (B)
IkarusTrojan.Win32.Injector
CyrenW32/Injector.ADCU-9291
WebrootW32.Trojan.Gen
AviraTR/Injector.ycxzc
MAXmalware (ai score=100)
Antiy-AVLTrojan[Backdoor]/Win32.Androm
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D1741E
ZoneAlarmHEUR:Backdoor.Win32.Androm.gen
MicrosoftTrojan:Win32/Dynamer!rfn
AhnLab-V3Win-Trojan/Delphiless.Exp
Acronissuspicious
VBA32TScope.Trojan.Delf
ALYacGen:Variant.Ulise.95262
MalwarebytesTrojan.MalPack.DLF
PandaTrj/Genetic.gen
ZonerTrojan.Win32.58312
ESET-NOD32a variant of Win32/Injector.EJVP
TrendMicro-HouseCallTSPY_HPLOKI.SMBD
TencentWin32.Backdoor.Androm.Szbx
SentinelOneDFI – Suspicious PE
FortinetW32/Agent.AJFK!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Ulise.95262 (B)?

Ulise.95262 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment