Malware

Bulz.595229 removal instruction

Malware Removal

The Bulz.595229 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.595229 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Bulz.595229?


File Info:

crc32: B3A7E25D
md5: 4300748c90e400dd9e8226a1dbedfb3e
name: 4300748C90E400DD9E8226A1DBEDFB3E.mlw
sha1: e35d9cc294b871a54da30e5619055ee59f05890b
sha256: 216e5b8dcc22226240552ab243c0c65eb6d4a3df80b9e57e3b0a902157e90f0d
sha512: b8ead8a6a88ea6b4a44c58b0a115e0be038ce62c98189ec9ac030a1df3fe0c8b849690acf9804c914e709c136a6b0d418ae8c520f2800e076754d0eb573ad014
ssdeep: 12288:GVO32z/gecNU2zqX6lUB2Ake4jvJXkhla9e9HUF3QT:G833DNgWUB2Ake4jvdB8mg
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright (c) 2021 Discord Inc. All rights reserved.
Assembly Version: 1.0.42.0
InternalName: ConsoleApp14.exe
FileVersion: 1.0.42.0
CompanyName: Discord Inc.
LegalTrademarks:
Comments: Discord - https://discord.com/
ProductName: Discord - https://discord.com/
ProductVersion: 1.0.42.0
FileDescription: Discord - https://discord.com/
OriginalFilename: ConsoleApp14.exe

Bulz.595229 also known as:

LionicTrojan.MSIL.Crysan.m!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader43.18199
ALYacGen:Variant.Bulz.595229
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaBackdoor:MSIL/Crysan.a17c7fa0
K7GWTrojan ( 005823971 )
K7AntiVirusTrojan ( 005823971 )
ESET-NOD32a variant of MSIL/Kryptik.ACTE
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderGen:Variant.Bulz.595229
MicroWorld-eScanGen:Variant.Bulz.595229
Ad-AwareGen:Variant.Bulz.595229
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.okudz@0
BitDefenderThetaGen:NN.ZemsilF.34142.Tm0@aKrsqxg
FireEyeGen:Variant.Bulz.595229
EmsisoftGen:Variant.Bulz.595229 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.MSIL.ezzm
AviraTR/Kryptik.zrxgs
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Bulz.D9151D
GDataGen:Variant.Bulz.595229
McAfeeRDN/Generic BackDoor
MAXmalware (ai score=81)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.1314053672
PandaTrj/GdSda.A
YandexTrojan.Kryptik!5pTOIgyZPuI
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ACTE!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Bulz.595229?

Bulz.595229 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment