Adware

About “Adware.Bulz.6592 (B)” infection

Malware Removal

The Adware.Bulz.6592 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Bulz.6592 (B) virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Adware.Bulz.6592 (B)?


File Info:

name: 37CA2CD0143022208C79.mlw
path: /opt/CAPEv2/storage/binaries/498f7e165843a66fbaa8daa34a55028017dea2cc83b9dfa1d2452231db493c58
crc32: 100DFE7C
md5: 37ca2cd0143022208c79de5efd0dc701
sha1: bfa7960c9796cf562e0f86eec91d14db019f24bd
sha256: 498f7e165843a66fbaa8daa34a55028017dea2cc83b9dfa1d2452231db493c58
sha512: 43f24856a5a64e387d2e281536a9d3020f2bc66986da5a83a98c89189d5dffba66cdf5e26b5bb93152024ac8ed432ab845a67d0cc7d9c8dd3cc96f8d210ae24b
ssdeep: 96:uX78fUuxRfdxmi+5x5bwi+XcE2NYlnlYJnLwFL0Kffa7CBXCsB791l9bg+wFO0u3:uuHt+55zVQnlYJLeLTzMsh9Vi5GbhCy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T167122B1253D08237CB9F17731DE39A505777D2089B379F5F29E4A23A5FA26088A93372
sha3_384: f9600b50bfd284ff99aea01e093f21d2f94e63291d0e33cf850d0a834c4b3866985d213ed55ca9db5c7145d5002e0c6a
ep_bytes: ff250020400000000000000000000000
timestamp: 2018-01-17 17:08:28

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: virus porno.exe
LegalCopyright:
OriginalFilename: virus porno.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Adware.Bulz.6592 (B) also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
DrWebTrojan.MulDrop9.5084
MicroWorld-eScanGen:Variant.Adware.Bulz.6592
FireEyeGeneric.mg.37ca2cd014302220
ALYacGen:Variant.Adware.Bulz.6592
CylanceUnsafe
VIPREGen:Variant.Adware.Bulz.6592
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
AlibabaTrojan:MSIL/SecurityRisk.a4f166a5
K7GWTrojan ( 700000121 )
Cybereasonmalicious.c9796c
BitDefenderThetaGen:NN.ZemsilF.34698.am1@a8xtwXh
VirITTrojan.Win32.MSIL5.BVQU
SymantecSecurityRisk.Dropper
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.CGX
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Msilkrypt-9856795-0
KasperskyHEUR:Trojan.MSIL.Dnoper.gen
BitDefenderGen:Variant.Adware.Bulz.6592
NANO-AntivirusTrojan.Win32.Agent.dztznw
AvastWin32:MalwareX-gen [Trj]
TencentMsil.Trojan.Dnoper.Dnhl
Ad-AwareGen:Variant.Adware.Bulz.6592
SophosMal/Generic-S
ComodoMalware@#ga09gk70zkyi
McAfee-GW-EditionGenericRXEH-KC!37CA2CD01430
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Adware.Bulz.6592 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.dpmwf
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=98)
Antiy-AVLTrojan/Generic.ASMalwS.4675
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Adware.Bulz.D19C0
GDataGen:Variant.Adware.Bulz.6592
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXEH-KC!37CA2CD01430
MalwarebytesTrojan.Script.MSIL
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:nFQsbgC9n1KpCSXZP/lJVg)
YandexTrojan.Dnoper!+hGpsL+10pQ
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/Agent
AVGWin32:MalwareX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Adware.Bulz.6592 (B)?

Adware.Bulz.6592 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment