Malware

How to remove “Bulz.503606”?

Malware Removal

The Bulz.503606 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.503606 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

crt.usertrust.com

How to determine Bulz.503606?


File Info:

crc32: 74E1C448
md5: b67ed32405e6aa34d817211b8c4dc196
name: B67ED32405E6AA34D817211B8C4DC196.mlw
sha1: 721046b6736eef4a327275a8fd4a53aa9b228f2f
sha256: f8568bb3c599da75cfe27a5951105aabda7091a9a3373de7de160ae136df44dd
sha512: 403c7059be13509e6321766b3a5bf082088126368e608b4d6518a6c11deeb1674c546c1ecf2362558ec097ae172edbf64fcc8cee3b8714aad3c2707b7970b115
ssdeep: 98304:mWBGPE6QPYwJ1MyAFgqjsF6Y5uwS+eTSN4durCbMTAkFg0/BMKaSnhCHQ8fZ:m+4gPjJargqYF6Y5umeTSN4+LTAsgkMB
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014
Assembly Version: 1.0.0.0
InternalName: Installer.exe
FileVersion: 1.0.0.0
ProductName: Installer
ProductVersion: 1.0.0.0
FileDescription: Installer
OriginalFilename: Installer.exe

Bulz.503606 also known as:

LionicAdware.MSIL.Generic.2!c
DrWebTrojan.iBryte.529
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.503606
CylanceUnsafe
ZillyaAdware.iBryteCRTD.Win32.2938
SangforPUP.Win32.PullUpdate.8
CrowdStrikewin/malicious_confidence_60% (D)
Cybereasonmalicious.405e6a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Adware.iBryte.AB
APEXMalicious
AvastFileRepMetagen [Adw]
Kasperskynot-a-virus:VHO:AdWare.MSIL.Generic
BitDefenderGen:Variant.Bulz.503606
NANO-AntivirusTrojan.Win32.IBryte.fcnpip
ViRobotAdware.Razy.6079024
MicroWorld-eScanGen:Variant.Bulz.503606
TencentMalware.Win32.Gencirc.116edfb8
Ad-AwareGen:Variant.Bulz.503606
SophosGeneric PUA HC (PUA)
ComodoApplicUnwnt@#1d79n2yxvtcoj
VIPREAdKnowledge (fs)
McAfee-GW-EditionArtemis!PUP
FireEyeGeneric.mg.b67ed32405e6aa34
EmsisoftApplication.AdBrowse (A)
SentinelOneStatic AI – Suspicious PE
WebrootPua.Downloadmgr.Gen
AviraADWARE/BrowseFox.Gen7
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitTrojan.Bulz.D7AF36
GDataGen:Variant.Bulz.503606
McAfeeArtemis!B67ED32405E6
MAXmalware (ai score=82)
VBA32TScope.Trojan.MSIL
YandexPUA.Agent!j4A8YP6Mvtc
IkarusPUA.BrowerSmart
AVGFileRepMetagen [Adw]
Paloaltogeneric.ml

How to remove Bulz.503606?

Bulz.503606 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment