Malware

Should I remove “Bulz.593980”?

Malware Removal

The Bulz.593980 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.593980 virus can do?

  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
csdw.jia-si.cn
downdcdn.jia-si.cn
www.jia-si.cn

How to determine Bulz.593980?


File Info:

crc32: CF1B605B
md5: 9e5baed34a957a2b4a533f498dcdd182
name: 9E5BAED34A957A2B4A533F498DCDD182.mlw
sha1: 725add538035f209bae65faf866ecc7b5552b407
sha256: 20ff3bffb5833b84632a03e7bd849b0d0ac0e3dceab37d73f287bccb00b3cde3
sha512: b6c3b0fb7a136f31e0aab3ca12909471f31010d97cb5d701c885d830f61c43e539382de73e6e9bf28d29fb917566c82e0d7f48f7dee88885a99b1c9a135d1723
ssdeep: 49152:k6ZIUzM5QJ0Eu0PcL5OpvNuI+YwaaIhCmG9+e5DriE:k6admu0P05OpVuIi5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Bulz.593980 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 00535f0d1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebAdware.Softcnapp.92
CAT-QuickHealTrojan.Skeeyah.S3293683
ALYacGen:Variant.Bulz.593980
MalwarebytesMalware.AI.4241390579
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 00535f0d1 )
Cybereasonmalicious.34a957
CyrenW32/S-d2a266d3!Eldorado
SymantecPUA.Downloader
ESET-NOD32a variant of Win32/Softcnapp.BC potentially unwanted
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
BitDefenderGen:Variant.Bulz.593980
NANO-AntivirusTrojan.Win32.Softcnapp.fhonwq
MicroWorld-eScanGen:Variant.Bulz.593980
TencentTrojan.Win32.Generic.e
Ad-AwareGen:Variant.Bulz.593980
SophosSoftcnapp (PUA)
ComodoApplication.Win32.AdWare.Softcnapp.O@80ok4p
F-SecureHeuristic.HEUR/AGEN.1142834
BitDefenderThetaGen:NN.ZexaF.34294.IAW@aawOhXfj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Softcnapp.vh
FireEyeGeneric.mg.9e5baed34a957a2b
EmsisoftGen:Variant.Bulz.593980 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Adload.vxq
AviraHEUR/AGEN.1142834
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftPUA:Win32/Softcnapp
ArcabitTrojan.Bulz.D9103C
GDataGen:Variant.Bulz.593980
AhnLab-V3PUP/Win32.Helper.R233980
Acronissuspicious
McAfeeGenericRXGH-RA!9E5BAED34A95
MAXmalware (ai score=100)
VBA32BScope.Trojan.Tiggre
PandaTrj/Genetic.gen
RisingAdware.Downloader!1.BBEC (CLASSIC)
YandexTrojan.GenAsa!KCy7MCQmY78
IkarusPUA.Softcnapp
FortinetW32/Generic!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Bulz.593980?

Bulz.593980 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment