Malware

Bulz.568323 (B) (file analysis)

Malware Removal

The Bulz.568323 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.568323 (B) virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Bulz.568323 (B)?


File Info:

crc32: 7C52F3DF
md5: a8b08d346dfd154a3c82cd2377260161
name: A8B08D346DFD154A3C82CD2377260161.mlw
sha1: 983ef26e511367404f41857edc9b14bb6fd16ba5
sha256: 3bfd94821c822f4475788dd6d09cf2d4bdb8a15bc78dd2370a85355448ffd1b0
sha512: e3fe7f1c2eadffd9e26219cbe2b30a1f2cbdcfcd5680e397bc080ea719457031d7f7a17eb24e42c29229cbd27deeaeb23ee97b307b1288693af0137e9ba13ccd
ssdeep: 6144:be97hI8WGNTNYdMzATVkQNUO7q5LCaQgKTBK9+Tyi:KxMGNTCWsTGQ4UaQgKTdX
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 2015 Microsoft Corporation. All rights reserved.
InternalName: AppVDllSurrogate
FileVersion: 5.1.125.0
CompanyName: Microsoft Corporation
PrivateBuild: RTM (by sftbuild on MBAMR02BLD02)
LegalTrademarks: Microsoftxae is a registered trademark of Microsoft Corporation.
ProductName: Microsoft Application Virtualization (App-V)
ProductVersion: 5.1.125.0
FileDescription: AppVDllSurrogate64
OriginalFilename: AppVDllSurrogate64.exe
Translation: 0x0409 0x04b0

Bulz.568323 (B) also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.568323
SangforTrojan.Win32.Save.a
CyrenW64/Ipamor.BM.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Dqan-9884908-0
BitDefenderGen:Variant.Bulz.568323
MicroWorld-eScanGen:Variant.Bulz.568323
Ad-AwareGen:Variant.Bulz.568323
McAfee-GW-EditionBehavesLike.Win64.Autorun.fh
FireEyeGen:Variant.Bulz.568323
EmsisoftGen:Variant.Bulz.568323 (B)
AviraHEUR/AGEN.1143081
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Bulz.D8AC03
GDataGen:Variant.Bulz.568323
McAfeeRDN/Generic.dx
MAXmalware (ai score=88)
VBA32Trojan.Scar
RisingTrojan.Kryptik!1.B239 (CLASSIC)
IkarusTrojan.Dropper
FortinetW32/Ipamor.8C98!tr
AVGWin32:TrojanX-gen [Trj]

How to remove Bulz.568323 (B)?

Bulz.568323 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment