Malware

About “Bulz.208872” infection

Malware Removal

The Bulz.208872 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.208872 virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Bulz.208872?


File Info:

crc32: 77D338C3
md5: 25795417a569fbd8e7618d1ea4847dd2
name: 25795417A569FBD8E7618D1EA4847DD2.mlw
sha1: 023206c1551a4db36c2de5459a17c902944fb35b
sha256: 764dcf93a9b76d53f13e2ea369ce174e8599fcc2163c03046cac0430b45bb34e
sha512: ec5be58ba1a3dd163bb45ddf7c2c37f417605abbbfee5f065d89753c7bcb5a7d69775a0141c6438180594615ca4c84663f2bce6f0bbf7de832784e49467c0c2f
ssdeep: 49152:WIiIKN5SSBzEflYvoGxUSJpXYL9IW1dXg3S/MHmgH:uN5ZAfsRXYL9IW1dXg3S/MHmgH
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2013
InternalName: orbd
FileVersion: 7.0.450.18
Full Version: 1.7.0_45-b18
CompanyName: Oracle Corporation
ProductName: Java(TM) Platform SE 7 U45
ProductVersion: 7.0.450.18
FileDescription: Java(TM) Platform SE binary
OriginalFilename: orbd.exe
Translation: 0x0000 0x04b0

Bulz.208872 also known as:

LionicTrojan.Win32.Bulz.4!c
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.208872
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Skeeyah.cf756e9b
Cybereasonmalicious.7a569f
CyrenW64/Ipamor.W.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Trojan.Blackie-9838328-0
BitDefenderGen:Variant.Bulz.208872
MicroWorld-eScanGen:Variant.Bulz.208872
Ad-AwareGen:Variant.Bulz.208872
SophosML/PE-A
BitDefenderThetaAI:Packer.DCFA27A81E
McAfee-GW-EditionBehavesLike.Win64.Generic.vm
FireEyeGeneric.mg.25795417a569fbd8
EmsisoftGen:Variant.Bulz.208872 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1119474
Antiy-AVLTrojan/Generic.ASBOL.C6AE
MicrosoftTrojan:Win32/Woreflint.A!cl
GDataGen:Variant.Bulz.208872
McAfeeArtemis!25795417A569
MAXmalware (ai score=84)
VBA32Trojan.Scar
TrendMicro-HouseCallTROJ_GEN.R03BH0CJT21
RisingTrojan.Kryptik!1.B239 (CLASSIC)
YandexTrojan.GenAsa!olAPAKw4oKQ
IkarusTrojan.Win32.Skeeyah
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Agent.FBB1!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Bulz.208872?

Bulz.208872 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment