Malware

What is “Ulise.96000”?

Malware Removal

The Ulise.96000 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.96000 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization
  • Attempts to modify browser security settings

Related domains:

i.haotukankan.com
pbstat.haotukankan.com

How to determine Ulise.96000?


File Info:

crc32: 92692E6B
md5: cc3b15bdba16a7a0ee1d210dc88cd6b5
name: freshnews-2.exe
sha1: a724cf9dc8fff7631791ebb5e8d51ddf3a7b5335
sha256: 15ba98a2d9413243181f83720b7f3541eb80c1ec2e7792e316767b99b5d6199b
sha512: dd37760f184d13498a132404b042e35c7655b9e68332b62b3b278bf19046835f21470d2b3bb2903318bdeeb94326eef25eca41f4539a89886d09162b73acc61e
ssdeep: 49152:DimbKaqZiuPC6RHj1s/io8WbX4V7xDn0+Oqs:D9GnfRHjuwRxK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyrightxa9 x4e0ax6d77x9752x67a3x7f51x7edcx79d1x6280x6709x9650x516cx53f8. x7248x6743x6240x6709
InternalName: freshnews
FileVersion: 1.0.1.3
ProductName: freshnews
ProductVersion: 1.0.1.3
FileDescription: freshnews
OriginalFilename: freshnews.exe
Translation: 0x0804 0x04b0

Ulise.96000 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanGen:Variant.Ulise.96000
CAT-QuickHealPUA.CoinminerRI.S10299595
McAfeeArtemis!CC3B15BDBA16
CylanceUnsafe
AegisLabTrojan.Win32.Zenpak.4!c
SangforMalware
K7AntiVirusAdware ( 0055caed1 )
BitDefenderGen:Variant.Ulise.96000
K7GWAdware ( 0055caed1 )
CyrenW32/Trojan.UZPO-8220
TrendMicro-HouseCallTROJ_GEN.R007H0CBG20
GDataGen:Variant.Ulise.96000
KasperskyTrojan.Win32.Zenpak.sso
AlibabaBackdoor:Win32/KZip.8ac6d98e
APEXMalicious
RisingAdware.AdPop!1.BF3B (CLASSIC)
Ad-AwareGen:Variant.Ulise.96000
SophosGeneric PUA KH (PUA)
DrWebProgram.Kuaizip.5
ZillyaTrojan.Zenpak.Win32.1474
McAfee-GW-EditionArtemis!PUP
FireEyeGen:Variant.Ulise.96000
EmsisoftGen:Variant.Ulise.96000 (B)
SentinelOneDFI – Suspicious PE
JiangminTrojan.Zenpak.aoq
WebrootW32.Adware.Gen
Antiy-AVLTrojan/Win32.Zenpak
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D17700
ZoneAlarmTrojan.Win32.Zenpak.sso
MicrosoftPUA:Win32/CoinMiner
AhnLab-V3PUP/Win32.AdLoad.C3862089
VBA32BScope.Adware.Burden
ALYacGen:Variant.Ulise.96000
AvastWin32:AdwareX-gen [Adw]
ESET-NOD32a variant of Win32/KuaiZip.U potentially unwanted
TencentMalware.Win32.Gencirc.10b8b06b
YandexTrojan.Zenpak!
IkarusAdWare.KuziTui
eGambitUnsafe.AI_Score_87%
FortinetRiskware/KuaiZip
AVGWin32:AdwareX-gen [Adw]
PandaTrj/CI.A

How to remove Ulise.96000?

Ulise.96000 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment