Malware

Bulz.138592 removal

Malware Removal

The Bulz.138592 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.138592 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Bulz.138592?


File Info:

name: 37B4551BDA314D1EA4A2.mlw
path: /opt/CAPEv2/storage/binaries/622125e4422cc21e11aa4abdb8c8960754f92ede3455f197864109bb5110f65a
crc32: EDA03116
md5: 37b4551bda314d1ea4a2c67f0033d75a
sha1: 3502e6ef3277bfcf270553ddc42456a3cb1e52a0
sha256: 622125e4422cc21e11aa4abdb8c8960754f92ede3455f197864109bb5110f65a
sha512: cdc241fd59501acd268dc963a222eb5dfbf54f26f47850fa91735a17ff874c750d12b02678a05bfea25c0ec1b06d77a3ea06051b22b94acdc408274dde4df0e6
ssdeep: 12288:j3eEs5myvLdgxZ69owwrA02MVKQEZ7wQkIQAk1iBw7fKh9i6:jt6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ACF4C50F6FA9D431C19F0D31AFD7E8D249B2FA016B03423EA60B637E64ADC5155E924B
sha3_384: 773e3a96f27b55e5a889e08fd363c9f2c33261c097220de4a73147a94f62e326cd37a7dcb56a12d843b6a27e1ee80298
ep_bytes: 68b09b4200e8f0ffffff000000000000
timestamp: 2017-05-16 10:56:53

Version Info:

Translation: 0x0409 0x04b0
Comments: S
CompanyName: D
FileDescription: Classical
LegalCopyright: Classical
ProductName: Klasikbot
FileVersion: 2.02.0003
ProductVersion: 2.02.0003
InternalName: Cht_V27
OriginalFilename: Cht_V27.exe

Bulz.138592 also known as:

BkavW32.AIDetect.malware2
LionicWorm.Win32.VBNA.o!c
MicroWorld-eScanGen:Variant.Bulz.138592
FireEyeGeneric.mg.37b4551bda314d1e
McAfeeRDN/Generic PUP.x
CylanceUnsafe
ZillyaWorm.VBNA.Win32.289977
SangforWorm.Win32.VBNA.b
K7AntiVirusUnwanted-Program ( 004f42be1 )
K7GWUnwanted-Program ( 004f42be1 )
Cybereasonmalicious.bda314
BitDefenderThetaGen:NN.ZevbaCO.34294.Um0@aOom44di
CyrenW32/OnlineGames.GK.gen!Eldorado
ESET-NOD32a variant of Win32/GameHack.ARC potentially unsafe
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Gamehack-6907579-0
KasperskyWorm.Win32.VBNA.b
BitDefenderGen:Variant.Bulz.138592
AvastFileRepMalware
TencentWin32.Worm.Vbna.Llrg
Ad-AwareGen:Variant.Bulz.138592
SophosGeneric PUA DF (PUA)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WH221
McAfee-GW-EditionRDN/Generic PUP.x
EmsisoftGen:Variant.Bulz.138592 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Bulz.138592
JiangminWorm.VBNA.afob
Antiy-AVLTrojan/Generic.ASMalwS.2033DB7
ArcabitTrojan.Bulz.D21D60
MicrosoftTrojan:Win32/Wacatac.B!ml
VBA32Worm.VBNA
ALYacGen:Variant.Bulz.138592
TrendMicro-HouseCallTROJ_GEN.R002C0WH221
IkarusWorm.Win32.VBNA
FortinetW32/VBNA.ARC!worm
AVGFileRepMalware
PandaTrj/GdSda.A

How to remove Bulz.138592?

Bulz.138592 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment