Malware

Bulz.411477 (file analysis)

Malware Removal

The Bulz.411477 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.411477 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Bulz.411477?


File Info:

name: 08FCB9DE674C3324DEE0.mlw
path: /opt/CAPEv2/storage/binaries/09af3a818bc0482321be2011cf70d7dfc1d5d96897b5fc700b0e460907a13ea6
crc32: 06D7CAEC
md5: 08fcb9de674c3324dee06ef5bdc0116e
sha1: eff1adaab37484018253ecc8beb3a1f39977d0c0
sha256: 09af3a818bc0482321be2011cf70d7dfc1d5d96897b5fc700b0e460907a13ea6
sha512: 8dd5890f1a574b5f6eda3081260acdedaa7a2e7bdd94b2b7dbc56c152703bb3762529b21b1f44166fbace0401495205c77c0d65315469a7efa99f78485d3eee8
ssdeep: 3072:OQIURTXJOsCssVk8RUphjz9212BTTHEORJiRvjsq:OsQsCsqbUpd9212pTkORJin
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T192E3F18620C4DC6BE5670A3246B28F57E7B1FD131663928B5B143EAF39322D7AD241C6
sha3_384: cdfe0adcf5994e2a59a7fc3fbcd8726ae3699b8033854d3e03079f6f0e9e591182ed1e04bb8bb7cde3630592f57c8907
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:46

Version Info:

CompanyName: www.bearpc.net
FileDescription: 愤怒的小鸟PC汉化版
FileVersion: 1.0.0
LegalCopyright: BEARPC精选软件集
ProductName: 愤怒的小鸟
Translation: 0x0804 0x03a8

Bulz.411477 also known as:

LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanGen:Variant.Bulz.411477
FireEyeGen:Variant.Bulz.411477
ALYacGen:Variant.Bulz.411477
ZillyaAdware.Generic.Win32.141311
K7AntiVirusUnwanted-Program ( 0040f9f81 )
K7GWUnwanted-Program ( 0040f9f81 )
SymantecSMG.Heur!gen
ESET-NOD32NSIS/TrojanDownloader.Chindo.R
TrendMicro-HouseCallTROJ_GEN.R002C0OGQ21
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Bulz.411477
NANO-AntivirusTrojan.Nsis.Feasu.djrzxb
AvastNSIS:Downloader-ABR [Trj]
Ad-AwareGen:Variant.Bulz.411477
SophosBearPC (PUA)
ComodoMalware@#dlacpmy8j5cz
BaiduNSIS.Trojan-Downloader.Agent.k
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0OGQ21
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
EmsisoftGen:Variant.Bulz.411477 (B)
MAXmalware (ai score=81)
GDataWin32.Application.NetBear.B
McAfeeArtemis!08FCB9DE674C
VBA32Trojan.Wacatac
APEXMalicious
SentinelOneStatic AI – Suspicious PE
FortinetW32/Chindo.H!tr.dldr
AVGNSIS:Downloader-ABR [Trj]
Cybereasonmalicious.e674c3

How to remove Bulz.411477?

Bulz.411477 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment