Malware

Bulz.548954 (file analysis)

Malware Removal

The Bulz.548954 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.548954 virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Bulz.548954?


File Info:

name: DD50BA2A4818B93DC0F4.mlw
path: /opt/CAPEv2/storage/binaries/6159a4b8c0028d452ffdd92264b4c1b41181db5e9d95cd7cd68c87ff6ea4dc34
crc32: E4734789
md5: dd50ba2a4818b93dc0f40b1c3821b1e5
sha1: 354c6de01894b3ff993bd1295c4134d904cb5cfc
sha256: 6159a4b8c0028d452ffdd92264b4c1b41181db5e9d95cd7cd68c87ff6ea4dc34
sha512: 500cfaf054a166eecf736e4d8046c6b8c8c43af9c73ab89466ab5767e8ae0a12768b1ddec2cf10c8e8e2ed603b489a5423e291a44947f5220909d24cd900ddb0
ssdeep: 24576:fZfW5q13GfhSJOYlcZUSZtSA4Eurx3ZoE4lFN0QE0QY:Ray3uzZUUB5JL0QE0Q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15E151265A3D0C822F9E05DF1D5C252BD892B2D34A44CCF293248B9AE1FB734AD425F5B
sha3_384: d6888652d05231a752a081baf426d74c5d60217ae23ef813d48acb1815f822bc74312f7d9183cd73db135dd27f63cdfb
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-09 16:07:21

Version Info:

Translation: 0x0000 0x04b0
Comments: Zayos
CompanyName:
FileDescription: Patcher
FileVersion: 1.0.0.0
InternalName: Patcher.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: Patcher.exe
ProductName: Patcher
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.548954 also known as:

MicroWorld-eScanGen:Variant.Bulz.548954
FireEyeGen:Variant.Bulz.548954
ALYacGen:Variant.Bulz.548954
APEXMalicious
BitDefenderGen:Variant.Bulz.548954
Ad-AwareGen:Variant.Bulz.548954
EmsisoftGen:Variant.Bulz.548954 (B)
SentinelOneStatic AI – Suspicious PE
MAXmalware (ai score=87)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Bulz.548954
MaxSecureTrojan.Malware.300983.susgen

How to remove Bulz.548954?

Bulz.548954 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment