Malware

About “Bulz.203885 (B)” infection

Malware Removal

The Bulz.203885 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.203885 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Bulz.203885 (B)?


File Info:

crc32: BC5ABE03
md5: ac1b831c36453cdf30ecc1492cfb3783
name: AC1B831C36453CDF30ECC1492CFB3783.mlw
sha1: 47b64440641256d7132b853990ecfc305e2050f4
sha256: eed6b846838510ea109972f51ed0e277ddd2147909689b9ad43f5fffb71751e7
sha512: 292e3d3f5715dd8a64ec8c9b37b968451f6e05a33c9c67b7f16cc2471e8048a3cb02c27f4beb006ad58393f6b5842983be68951d0d4d2fdd8914ee5378e898e4
ssdeep: 3072:XlCLwX3OfO9U8ix8K9j5jYlBV9A8DuxxSbN5Xq8asi5sq5MBbZAIeLbIudxRh4:XlRX31UfeiI9ixjssTujIb/R
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014 - 2020
Assembly Version: 0.0.0.0
InternalName: lassonssss.exe
FileVersion: 8.12.16.20
CompanyName: 0k!d*9$8l2e#j@5&
Comments: Myduqaebuxalesaho
ProductName: Natabadaedypaeraerelu
ProductVersion: 8.12.16.20
FileDescription: Natabadaedypaeraerelu
OriginalFilename: lassonssss.exe

Bulz.203885 (B) also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.203885
FireEyeGeneric.mg.ac1b831c36453cdf
McAfeePWS-FCQR!AC1B831C3645
MalwarebytesTrojan.Crypt.MSIL
SangforMalware
BitDefenderGen:Variant.Bulz.203885
BitDefenderThetaGen:NN.ZemsilF.34634.wm0@aCKadLk
CyrenW32/MSIL_Kryptik.ANE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 90)
KasperskyHEUR:Backdoor.MSIL.Androm.gen
RisingTrojan.Kryptik!8.8 (TFE:C:uxWjlmUtkOG)
Ad-AwareGen:Variant.Bulz.203885
F-SecureTrojan.TR/Kryptik.ugzzk
DrWebTrojan.Siggen10.60384
VIPRETrojan.Win32.Generic!BT
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionPWS-FCQR!AC1B831C3645
EmsisoftGen:Variant.Bulz.203885 (B)
AviraTR/Kryptik.ugzzk
MicrosoftTrojan:MSIL/CryptInject.PK!MTB
ArcabitTrojan.Bulz.D31C6D
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataGen:Variant.Bulz.203885
AhnLab-V3Trojan/Win32.CryptInject.R355265
ALYacGen:Variant.Bulz.203885
MAXmalware (ai score=81)
ESET-NOD32a variant of MSIL/Kryptik.YOD
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Kryptik.YOD!tr
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360HEUR/QVM03.0.4CD7.Malware.Gen

How to remove Bulz.203885 (B)?

Bulz.203885 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment