Malware

Bulz.213096 (file analysis)

Malware Removal

The Bulz.213096 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.213096 virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

updat.duckdns.org

How to determine Bulz.213096?


File Info:

crc32: 58B3FD2C
md5: b8939612bc721796c77eb254ef8ab262
name: B8939612BC721796C77EB254EF8AB262.mlw
sha1: 94eb908de098f6b41cf593fbab24c585815a000c
sha256: 249bed9b89af07f4257c55f5bbed8fb24890e9bc2ddde6031449332b3676574d
sha512: 39293e4fa8e6caac6465377e7d4af5cca51b076a484a6fd3a0022a26a9e38ee777705fb2dfa035dfa8bb5683aa1e1ef36446fde6cfeb727d92cf759e8667303a
ssdeep: 1536:pI4Xl67aG5ISwX/y5L0PY1tBJv8K7mItVTbST9HAYE:KuAaGCTXKV8CHVXGAY
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Bulz.213096 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.213096
CylanceUnsafe
SangforRiskware.MSIL.Confuser.mt
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.2bc721
CyrenW32/Razy.BE.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.FM.gen
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Packed.Hpbladabi-6860330-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Bulz.213096
NANO-AntivirusTrojan.Win32.Bladabindi.ewpvmc
MicroWorld-eScanGen:Variant.Bulz.213096
TencentWin32.Trojan.Generic.Pgwh
Ad-AwareGen:Variant.Bulz.213096
SophosMal/Generic-S
ComodoMalware@#3d75udabyv31l
BitDefenderThetaGen:NN.ZemsilF.34266.emW@auprXEg
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
FireEyeGeneric.mg.b8939612bc721796
EmsisoftGen:Variant.Bulz.213096 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Autoit.dce
AviraHEUR/AGEN.1112906
Antiy-AVLTrojan/Generic.ASBOL.38BB
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi
GDataGen:Variant.Bulz.213096
AhnLab-V3Trojan/Win32.Bladabindi.C424783
Acronissuspicious
McAfeeGenericRXAA-EL!B8939612BC72
MAXmalware (ai score=99)
MalwarebytesTrojan.InfoStealer.FRGen
PandaTrj/GdSda.A
YandexTrojan.Agent!sRur7WPjAg4
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injecto.58E1!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Bulz.213096?

Bulz.213096 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment