Malware

About “Ulise.99268” infection

Malware Removal

The Ulise.99268 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.99268 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Attempts to remove evidence of file being downloaded from the Internet
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ulise.99268?


File Info:

crc32: 5AA05605
md5: 0279834940809038d5e151b1ed493ac3
name: putty.exe
sha1: 4190de80cf6eeae05b15a7eee173c302573a18b2
sha256: 8af398bacd8ae8344a095b856dadf6083e3068dc34edaa7abf91e93dfeb5b281
sha512: 00e11a97f6f36875dffd1c0e1332f9f272cda1a43b36b57f7137548ac168e9f6f6f9970e0c21e1229593c2f4e2558881c3a2d6a03ebed1aa94152b7b005862a8
ssdeep: 6144:xPsnSho0LBNp1xEQf0XyG9pG0VduAAOuZYmmQ6GdwPg6iSr:VkioGp1x3KDKAUCRQneAS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ulise.99268 also known as:

MicroWorld-eScanGen:Variant.Ulise.99268
FireEyeGeneric.mg.0279834940809038
CAT-QuickHealTrojanspy.Avemaria
Qihoo-360Win32/Trojan.Spy.c7a
McAfeeArtemis!027983494080
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.AveMaria.l!c
SangforMalware
K7AntiVirusTrojan ( 004f31091 )
BitDefenderGen:Variant.Ulise.99268
K7GWTrojan ( 004f31091 )
Cybereasonmalicious.940809
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataGen:Variant.Ulise.99268
KasperskyTrojan-Spy.Win32.AveMaria.cvi
AlibabaTrojanSpy:Win32/AveMaria.ae4a1f70
NANO-AntivirusTrojan.Win32.Maria.hagmtx
ViRobotTrojan.Win32.Z.Ursu.442368
AvastWin32:Trojan-gen
RisingSpyware.AveMaria!8.108C2 (CLOUD)
Ad-AwareGen:Variant.Ulise.99268
SophosMal/Generic-S
F-SecureTrojan.TR/Agent.yttic
DrWebTrojan.PWS.Maria.3
TrendMicroTROJ_GEN.R035C0WBE20
McAfee-GW-EditionBehavesLike.Win32.BadFile.gh
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Ulise.99268 (B)
IkarusTrojan.Win32.Agent
CyrenW32/Trojan.OHBE-5953
JiangminTrojanSpy.AveMaria.hq
WebrootW32.Malware.Gen
AviraTR/Agent.yttic
Antiy-AVLTrojan[Spy]/Win32.AveMaria
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D183C4
ZoneAlarmTrojan-Spy.Win32.AveMaria.cvi
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34090.BuW@aWtlQGpi
ALYacGen:Variant.Ulise.99268
MAXmalware (ai score=86)
VBA32TrojanSpy.AveMaria
MalwarebytesBackdoor.AveMaria
ESET-NOD32Win32/Agent.TJS
TrendMicro-HouseCallTROJ_GEN.R035C0WBE20
TencentWin32.Trojan-spy.Avemaria.Dkz
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/AveMaria.CVI!tr
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.74832017.susgen

How to remove Ulise.99268?

Ulise.99268 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment