Malware

Bulz.399637 information

Malware Removal

The Bulz.399637 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.399637 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Bulz.399637?


File Info:

crc32: 812136DC
md5: 7628a9434e69748e65749a562ae7bfef
name: 7628A9434E69748E65749A562AE7BFEF.mlw
sha1: c93e1f425450f3726df1357c77ad4309daff9467
sha256: 1df11e5c5654e4ee4a6e519cea6877abeead8d3798bbd03a806624299e7351f9
sha512: 703476f5bd756be728383d35710051f91c834af66a8c82c5e85a1747551761c0d75405ae721c28e40fd803737d9602c931e3bfc9e20f3692331eafb66a1a858f
ssdeep: 49152:+ntTXs6aN9imMKYuNcpDQrTQs7yzsk5S2Q/cCFxdECQ6Pp:+9s6NDuNcJSdkzQdFfQ6Pp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: AYHPClient.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: AYHPClient
ProductVersion: 1.0.0.0
FileDescription: AYHPClient
OriginalFilename: AYHPClient.exe

Bulz.399637 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Fsysna.4!c
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.399637
CylanceUnsafe
SangforTrojan.MSIL.Deepsea.C
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Fsysna.36b1b23b
Cybereasonmalicious.34e697
CyrenW32/Agent.AIK.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Fsysna.etje
BitDefenderGen:Variant.Bulz.399637
NANO-AntivirusTrojan.Win32.Fsysna.exrhfh
MicroWorld-eScanGen:Variant.Bulz.399637
TencentWin32.Trojan.Fsysna.Afrk
Ad-AwareGen:Variant.Bulz.399637
SophosMal/Generic-S
ComodoMalware@#1ig6z47w03dhb
BitDefenderThetaGen:NN.ZexaF.34266.as0@a4PXBu
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
FireEyeGeneric.mg.7628a9434e69748e
EmsisoftGen:Variant.Bulz.399637 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.242BD05
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Bulz.D61915
GDataGen:Variant.Bulz.399637
AhnLab-V3Trojan/Win32.Fsysna.C2375410
McAfeeArtemis!7628A9434E69
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/CI.A
RisingTrojan.Generic@ML.99 (RDML:maBIyqfM8nKqkvNCvn0zQw)
YandexTrojan.Fsysna!5IaGl0nfBuA
IkarusPacked.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.QFE!tr.pws
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Bulz.399637?

Bulz.399637 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment