Malware

Bulz.556847 (B) malicious file

Malware Removal

The Bulz.556847 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.556847 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Bulz.556847 (B)?


File Info:

crc32: 467A1A92
md5: d685e4aacc57eae515e7539d74dbd458
name: D685E4AACC57EAE515E7539D74DBD458.mlw
sha1: eed435c0d381b9521fa3c4a187842112a2b5ec9e
sha256: 7515993451f1172b406b817567273a8b047cdbc39746fad4a38b64bfd9024af9
sha512: 0e8ad355b148dd68ad51cb256bf9b42ba752bbf0abdb0724e1c6147fad731da9b52f08b2a9271ce81af77d3af72d96fb75ae3093df81a5443e0878f194aaba3b
ssdeep: 12288:l//f+i75l2no4kCyFgw1kUknUHoe84Eto7uoppvppMkkkkkkkkkkkkkkkkkkkkk:l/Oo376WWN+65n
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright (C) 2017
Assembly Version: 7.2.22.194
InternalName: ConsoleApp12.exe
FileVersion: 7.2.22.194
CompanyName: Tencent Inc.
LegalTrademarks:
Comments: Foxmail 7.2
ProductName: Foxmail 7.2
ProductVersion: 7.2.22.194
FileDescription: Foxmail 7.2
OriginalFilename: ConsoleApp12.exe

Bulz.556847 (B) also known as:

LionicTrojan.MSIL.Agensla.i!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.556847
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Kryptik.b16e3b8d
K7GWRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ACVH
ZonerTrojan.Win32.119513
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Injuke.gen
BitDefenderGen:Variant.Bulz.556847
MicroWorld-eScanGen:Variant.Bulz.556847
Ad-AwareGen:Variant.Bulz.556847
SophosML/PE-A
ComodoTrojWare.Win32.UMal.ktiac@0
BitDefenderThetaGen:NN.ZemsilF.34142.Gm0@auFXPAl
FireEyeGeneric.mg.d685e4aacc57eae5
EmsisoftGen:Variant.Bulz.556847 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Casdet!rfn
ArcabitTrojan.Bulz.D87F2F
GDataGen:Variant.Bulz.556847
AhnLab-V3Trojan/Win.MalwareX-gen.C4639805
Acronissuspicious
McAfeeRDN/Generic PWS.y
MAXmalware (ai score=99)
MalwarebytesTrojan.Crypt.MSIL
TrendMicro-HouseCallTROJ_GEN.R06CH09IK21
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Bulz.556847 (B)?

Bulz.556847 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment