Malware

Bulz.525592 removal tips

Malware Removal

The Bulz.525592 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.525592 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Bulz.525592?


File Info:

crc32: FC84ECD4
md5: d24161dda2a0db320d4a5b4a0076eb3c
name: D24161DDA2A0DB320D4A5B4A0076EB3C.mlw
sha1: a395449da2eea5004a8d302935346a27fdca7dfb
sha256: 44860ebbc5dfeb6c1eed27a7157457138007f1fb06ced901ab6ca9f7d2f9e0ae
sha512: 47192a99b609294fdead366323b9cfcbaa2ec73cf2dd601dd1cac2cc4dfa3b8d632a86626083143bb350247f01c3712f5123c185500f43e9a9d55d0fd48a192b
ssdeep: 48:632p1RlPPnVlGByU0YWuJVW2602M4/KSj3kRgO+HRgjUnsq//:+0i52M4EgO+xgkx
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 2.1.5.121
InternalName: handsomeness.exe
FileVersion: 2.1.5.121
ProductVersion: 2.1.5.121
FileDescription: bartz
OriginalFilename: handsomeness.exe

Bulz.525592 also known as:

LionicRiskware.Win32.DotDo.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.525592
ALYacGen:Variant.Bulz.525592
CylanceUnsafe
SangforPUP.Win32.Dotdo.FB
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:MSIL/Dotdo.e83929ea
CyrenW32/Dotdo.G.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Adware.Dotdo.FB
APEXMalicious
AvastWin32:Adware-gen [Adw]
BitDefenderGen:Variant.Bulz.525592
NANO-AntivirusRiskware.Win32.Dotdo.fesmpo
ViRobotAdware.Dotdo.5632.BYV
TencentMsil.Adware.Dotdo.Wopd
Ad-AwareGen:Variant.Bulz.525592
SophosGeneric PUA KD (PUA)
ComodoApplication.MSIL.Razy.B@7xyy94
F-SecureHeuristic.HEUR/AGEN.1122406
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.AdwareTskLnk.zz
FireEyeGeneric.mg.d24161dda2a0db32
EmsisoftGen:Variant.Bulz.525592 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Occamy.C44
ArcabitTrojan.Bulz.D80518
SUPERAntiSpywareAdware.DotDo/Variant
GDataGen:Variant.Bulz.525592
McAfeeAdware-TskLnk
MAXmalware (ai score=97)
MalwarebytesAdware.DotDo.Generic.TskLnk
PandaTrj/CI.A
IkarusAdWare.MSIL.Dotdo
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/Dotdo
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Bulz.525592?

Bulz.525592 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment