Malware

Bulz.424117 (B) removal

Malware Removal

The Bulz.424117 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.424117 (B) virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine Bulz.424117 (B)?


File Info:

name: 6FB9B6390651DA714E1F.mlw
path: /opt/CAPEv2/storage/binaries/252db1130b634e138b88a1b09d990e6e0f0271af23321d791a8021dbbbb639b7
crc32: A66A4625
md5: 6fb9b6390651da714e1fe15ecb3fe23a
sha1: ebffa3749d45225b12ae0f41bc8e8892f43ebd79
sha256: 252db1130b634e138b88a1b09d990e6e0f0271af23321d791a8021dbbbb639b7
sha512: be9e12418056065aadfcf8e7c63ee4e332814d92efea7484bb882847676fc64146583917cd66e77f7e0cb81d9842218bf1db72d10d8c0e127546d817d995745d
ssdeep: 98304:8DU1uZltAbBj9aC29X/HgkWJ02NuSZTKA0t9FFPE9CrPkwy0TBmDDlP8ztUcA:twZmp9aC2BxWJdbk9fcQscTBeZStUcA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16D16DD0B7A9498C6CC2E5CBCD78BC308B3BD9186D775848D49CDDCB825D66B60E1B2D2
sha3_384: ef20343e23c668979f7541be314e3c35a804d310da4b66edd24448459206c29fa6a239d788f207add0ad0ddd92d99c85
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-04-06 17:07:53

Version Info:

Translation: 0x0000 0x04b0
Comments: Builder CH Miner
CompanyName: Builder CH Miner
FileDescription: Builder CH Miner
FileVersion: 4.0.0.0
InternalName: Builder.exe
LegalCopyright: Copyright © 2021 CH Miner
LegalTrademarks:
OriginalFilename: Builder.exe
ProductName: Builder CH Miner
ProductVersion: 4.0.0.0
Assembly Version: 4.0.0.0

Bulz.424117 (B) also known as:

MicroWorld-eScanGen:Variant.Bulz.424117
FireEyeGeneric.mg.6fb9b6390651da71
ALYacGen:Variant.Bulz.424117
MalwarebytesBackdoor.AsyncRAT
ZillyaTrojan.Agent.Win32.1985711
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan ( 0057978a1 )
BitDefenderGen:Variant.Bulz.424117
K7GWTrojan ( 0057978a1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.DLZ
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaBackdoor:MSIL/Crysan.dc7d4b67
Ad-AwareGen:Variant.Bulz.424117
EmsisoftGen:Variant.Bulz.424117 (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R02CC0WKK21
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
SophosMal/Generic-S
IkarusTrojan.MSIL.Agent
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.326DA9D
MicrosoftTrojan:Win32/AgentTesla!ml
GDataGen:Variant.Bulz.424117
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4623073
McAfeeArtemis!6FB9B6390651
MAXmalware (ai score=89)
VBA32TScope.Trojan.MSIL
CylanceUnsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R02CC0WKK21
YandexTrojan.Agent!UsqaqGkra40
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Agent.DHI!tr
BitDefenderThetaGen:NN.ZemsilF.34294.@p0@ayqgpee
AVGWin32:CoinminerX-gen [Trj]
Cybereasonmalicious.49d452
AvastWin32:CoinminerX-gen [Trj]
MaxSecureTrojan.Malware.1728101.susgen

How to remove Bulz.424117 (B)?

Bulz.424117 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment