Malware

Bulz.280872 (B) removal

Malware Removal

The Bulz.280872 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.280872 (B) virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Bulz.280872 (B)?


File Info:

name: 3D4087C20C04B235821B.mlw
path: /opt/CAPEv2/storage/binaries/ba24764911f609ca37b38a412632b7b816bd1d5dc20bd099f733d96115c9e711
crc32: 67D58500
md5: 3d4087c20c04b235821bf17b9a2344ed
sha1: 5cdde940d1a7158f9c961b97651987a818758e14
sha256: ba24764911f609ca37b38a412632b7b816bd1d5dc20bd099f733d96115c9e711
sha512: d5be9b960a9146bed79d8c2f5386c96eeae73186b2984326a5ecc0bd4627627fc8af094cb14faa7d7eb9770f1c8d85845383bdf07df2dbb8ce995a621ab1f936
ssdeep: 49152:xCWlIssZLi5lKr+C0DkYOMwwnMb4PmyVaYIR8:mGUv5YOXwnS4rVaYIi
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T13226C601658BD222CC6C1D705E6896B5F8506EAF3F5EF4E33E407A6DD9335C426BA223
sha3_384: cd8298678e2184064afbb31610503984e4e76af5aa8b47ee6371b589419cf26aa47a1d43f51cac1bd137b5eb99dff4cd
ep_bytes: 4883ec28e88f0200004883c428e99efd
timestamp: 2013-10-08 12:58:51

Version Info:

CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 7.0.450.18
Full Version: 1.7.0_45-b18
InternalName: kinit
LegalCopyright: Copyright © 2013
OriginalFilename: kinit.exe
ProductName: Java(TM) Platform SE 7 U45
ProductVersion: 7.0.450.18
Translation: 0x0000 0x04b0

Bulz.280872 (B) also known as:

LionicTrojan.Win32.Bulz.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.280872
FireEyeGeneric.mg.3d4087c20c04b235
McAfeeArtemis!3D4087C20C04
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaVirus:Win64/Ipamor.97eb6c04
Cybereasonmalicious.20c04b
CyrenW64/Ipamor.W.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Generic-9863791-0
BitDefenderGen:Variant.Bulz.280872
AvastWin64:Malware-gen
Ad-AwareGen:Variant.Bulz.280872
EmsisoftGen:Variant.Bulz.280872 (B)
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.rm
SophosML/PE-A
IkarusTrojan.Agent
Antiy-AVLTrojan/Generic.ASBOL.C6AF
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Bulz.280872
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.280872
MAXmalware (ai score=81)
VBA32Backdoor.Swz
TrendMicro-HouseCallTROJ_GEN.R03BH0CL121
RisingSpyware.Zbot!1.648A (CLASSIC)
YandexTrojan.Agent!oL8MFOXcQ/U
SentinelOneStatic AI – Malicious PE
FortinetW64/Agent.FBB1!tr
AVGWin64:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.121218.susgen

How to remove Bulz.280872 (B)?

Bulz.280872 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment