Malware

Should I remove “Ulise.87851 (B)”?

Malware Removal

The Ulise.87851 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.87851 (B) virus can do?

  • Presents an Authenticode digital signature
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization
  • Steals private information from local Internet browsers
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
xfhtmlreport.nanjingchenxi.com

How to determine Ulise.87851 (B)?


File Info:

crc32: 220A6935
md5: 38a398699940549bf5735c213d5ed738
name: xfhtmlreport-1.exe
sha1: 2ec2c0f4ce38f050dd674fcdb708b2e5cb99def7
sha256: a2d23ddb606f844633338922d6f58a65773f9585537a89426fde1cebc718612f
sha512: c908767813b5f5d1ed072d30ffdea97baef521232e5fb65f9c82a846c9b9c1a9e21cf856be8a20fddbcc9f7995d7aea322a2f09f00bb69abeaa1b06d67beb53a
ssdeep: 24576:mFVz1wy65V0L1LQQjO00trKUTQZIY9e3isU+NBmuU3vbx+geMPY3vf9kT+FhDVo6:Wwye/PD2M8+TmNFleMuqT+FhDVoH/YX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019
InternalName: xfhtmlreport
FileVersion: 1.0.2.3
ProductName: xfhtmlreport
ProductVersion: 1.0.2.3
FileDescription: xfhtmlreport
Translation: 0x0804 0x04b0

Ulise.87851 (B) also known as:

DrWebProgram.Kuaizip.4
MicroWorld-eScanGen:Variant.Ulise.87851
FireEyeGeneric.mg.38a398699940549b
CAT-QuickHealPUA.CoinminerRI.S9232579
McAfeeGenericRXJD-EH!38A398699940
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 005096951 )
BitDefenderGen:Variant.Ulise.87851
K7GWAdware ( 005096951 )
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Variant.Ulise.87851
AlibabaBackdoor:Win32/KZip.2247da3e
NANO-AntivirusRiskware.Win32.Kuaizip.gixzbv
Ad-AwareGen:Variant.Ulise.87851
EmsisoftGen:Variant.Ulise.87851 (B)
ComodoMalware@#2toq4wxtjnki8
F-SecureHeuristic.HEUR/AGEN.1043898
McAfee-GW-EditionGenericRXJD-EH!38A398699940
SophosGeneric PUA CO (PUA)
CyrenW32/Trojan.DIOW-3861
AviraHEUR/AGEN.1043898
Antiy-AVLGrayWare/Win32.CoinMiner
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D1572B
MicrosoftPUA:Win32/CoinMiner
AhnLab-V3PUP/Win32.RL_KuaiZip.R302178
VBA32BScope.Adware.Burden
ALYacGen:Variant.Ulise.87851
PandaTrj/CI.A
ESET-NOD32a variant of Win32/KuaiZip.V potentially unwanted
RisingPUA.KuaiZip!8.2F40 (CLOUD)
FortinetW32/Ursu.75686!tr
AVGWin32:Malware-gen

How to remove Ulise.87851 (B)?

Ulise.87851 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment