Malware

Bulz.5928 removal guide

Malware Removal

The Bulz.5928 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.5928 virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • A process attempted to delay the analysis task by a long amount of time.

How to determine Bulz.5928?


File Info:

crc32: 3BB537AF
md5: 43ce409c21cad2ef41c9e1725ca12cea
name: 43CE409C21CAD2EF41C9E1725CA12CEA.mlw
sha1: da52d6344952e0fb892e40fc40befb72bbac86b1
sha256: 6c1db6c3d32c921858a4272e8cc7d78280b46bad20a1de23833cbe2956eebf75
sha512: 0c3c6014d72b851db1cd7efd30d39f979524bbaf1dd6135b2d3fe08455961367e54cf1f36be6da203b1317686b7c337760ba0327e2e323aa28f980845d9134c5
ssdeep: 3072:4OiCHo8igC82owhYWeP2IQC2mCJu6/dLVLQM/FhPFeQ0P75V0DRnlnOP:gCTigobRQbYdBL1hPkQdpk
type: PE32 executable (DLL) (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2016
InternalName: hh
FileVersion: 1.0.3.3
CompanyName: TODO
ProductName: TODO
ProductVersion: 1.0.3.3
FileDescription: TODO
OriginalFilename: hh
Translation: 0x0009 0x04b0

Bulz.5928 also known as:

BkavW32.APTodcrt12PKB.Trojan
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.5928
Qihoo-360Win32/Trojan.Agentb.HgkASOUA
McAfeeRDN/Generic.dx
MalwarebytesTrojan.Agent
ZillyaTrojan.Agent.Win32.1357397
SangforTrojan.Win32.Agent.gen
AlibabaTrojan:Win32/Generic.8fbda1de
K7GWTrojan ( 0056b3a61 )
K7AntiVirusTrojan ( 0056b3a61 )
CyrenW32/Trojan.VOZU-3811
SymantecTrojan Horse
Paloaltogeneric.ml
ClamAVWin.Trojan.Smanager-9822863-2
KasperskyTrojan.Win32.Agentb.jzxb
BitDefenderGen:Variant.Bulz.5928
NANO-AntivirusTrojan.Win32.Generic.hstsaa
ViRobotTrojan.Win32.S.Agent.175616.KR
RisingBackdoor.SManager!1.D127 (CLASSIC)
Ad-AwareGen:Variant.Bulz.5928
EmsisoftGen:Variant.Bulz.5928 (B)
ComodoMalware@#4nap9whwr6zv
F-SecureTrojan.TR/Agent.odcrt
DrWebTrojan.PhantomNet.1
VIPRETrojan.Win32.Generic!BT
TrendMicroBackdoor.Win32.PHANTOMNET.YEAG-A
McAfee-GW-EditionRDN/Generic.dx
FireEyeGeneric.mg.43ce409c21cad2ef
SophosMal/Generic-S
IkarusTrojan.Win32.Agent
WebrootW32.Trojan.Gen
AviraTR/Agent.odcrt
Antiy-AVLTrojan/Win32.Agent
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitTrojan.Bulz.D1728
AhnLab-V3Backdoor/Win32.Agent.R358256
ZoneAlarmTrojan.Win32.Agentb.jzxb
GDataGen:Variant.Bulz.5928
CynetMalicious (score: 85)
ESET-NOD32a variant of Win32/PhantomNet.B
VBA32Trojan.Agentb
ALYacTrojan.Agent.Ymacco
MAXmalware (ai score=88)
CylanceUnsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.Win32.PHANTOMNET.YEAG-A
TencentWin32.Trojan.Agentb.Pdms
YandexTrojan.Agentb!t6X6QmXk378
FortinetW32/AGENT.UJA!tr
BitDefenderThetaGen:NN.ZedlaF.34608.ku8@aSueKkhb
AVGWin32:Trojan-gen
MaxSecureTrojan.Malware.104361226.susgen

How to remove Bulz.5928?

Bulz.5928 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment