Malware

How to remove “Bulz.24480”?

Malware Removal

The Bulz.24480 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.24480 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Bulz.24480?


File Info:

name: E6C2FD519B7A8CF70812.mlw
path: /opt/CAPEv2/storage/binaries/55db424fa45cbd83509d30e31de8cfc51dcc35fd0a6103c67b38b26fa4f0595b
crc32: ECA41E7E
md5: e6c2fd519b7a8cf708123fc1f7d10970
sha1: 1bc7a5a9b98bcf30d9a87cb80aa34fce901dc98b
sha256: 55db424fa45cbd83509d30e31de8cfc51dcc35fd0a6103c67b38b26fa4f0595b
sha512: b9fc2ccf26ca1e6302225ee0bcb50f31c828c351be96a66516aa123f28b5829af99b68cd870a9e44505212ea04a35eb7f69f1af3f5061be2912999a7afa18d14
ssdeep: 1536:gow92jNVgvPXLALbqlvH607jo1oZgpzl6ZeFANAjcJ4NetPR2oNO:gJ9K/mPX+b4H69mozlgeqAEtPR2oNO
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1D563F1547C58EEFED81B77BACF93C56C524D6021C7758FB8E1E62D8021724928AB0993
sha3_384: cb6ff6c26202c4c832a44a3683d91f1b595b85374ba25198282e6af353fc0e758200e6ec73ca7ea52dbb7eba7249e21d
ep_bytes: 807c2408010f85c201000060be00b001
timestamp: 2009-03-23 15:50:35

Version Info:

0: [No Data]

Bulz.24480 also known as:

LionicTrojan.Win32.Lmir.leg3
MicroWorld-eScanGen:Variant.Bulz.24480
ClamAVWin.Malware.Elzob-10002605-0
FireEyeGeneric.mg.e6c2fd519b7a8cf7
CAT-QuickHealTrojan.Dynamer.11119
SkyhighBehavesLike.Win32.Generic.lc
ALYacGen:Variant.Bulz.24480
Cylanceunsafe
ZillyaTrojan.WOW.Win32.3724
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005148ca1 )
AlibabaTrojanPSW:Win32/Wowsteal.3fc770be
K7GWTrojan ( 005148ca1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZedlaF.36744.emPfa0UvKRb
VirITTrojan.Win32.Generic.JWM
SymantecInfostealer
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/PSW.Legendmir.NHW
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-GameThief.Win32.WOW.gzz
BitDefenderGen:Variant.Bulz.24480
NANO-AntivirusTrojan.Win32.WOW.bcgpck
AvastWin32:Trojan-gen
TencentTrojan.Win32.FakeMS.tpd
EmsisoftGen:Variant.Bulz.24480 (B)
BaiduWin32.Trojan-PSW.Legendmir.b
F-SecureTrojan.TR/Dldr.Agent.szy.2
DrWebTrojan.PWS.Wsgame.28591
VIPREGen:Variant.Bulz.24480
TrendMicroTSPY_GAMETHI.B
SophosMal/GamePSW-C
IkarusWorm.Rbot
GDataGen:Variant.Bulz.24480
JiangminTrojan/Moshou.l
WebrootW32.Malware.Downloader
GoogleDetected
AviraTR/Dldr.Agent.szy.2
Antiy-AVLTrojan[GameThief]/Win32.WOW
KingsoftWin32.Troj.Agent.cks
XcitiumMalware@#3qyzc4msorh9v
ArcabitTrojan.Bulz.D5FA0
ViRobotTrojan.Win32.PSWWow.71686
ZoneAlarmTrojan-GameThief.Win32.WOW.gzz
MicrosoftPWS:Win32/Wowsteal.AY
VaristW32/OnlineGames.DB.gen!Eldorado
AhnLab-V3Trojan/Win32.OnlineGameHack.R58
McAfeeGenericRXAA-FA!E6C2FD519B7A
MAXmalware (ai score=100)
VBA32TScope.Malware-Cryptor.SB
PandaGeneric Malware
TrendMicro-HouseCallTSPY_GAMETHI.B
RisingTrojan.Hijacker!1.9E73 (CLASSIC)
YandexTrojan.GenAsa!Fn4cPoaFZ9E
SentinelOneStatic AI – Malicious PE
FortinetW32/LegMir.J!tr.pws
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove Bulz.24480?

Bulz.24480 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment