Malware

Bulz.656420 (B) removal tips

Malware Removal

The Bulz.656420 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.656420 (B) virus can do?

  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Bulz.656420 (B)?


File Info:

name: 257D813F5033E7AFFE03.mlw
path: /opt/CAPEv2/storage/binaries/c0f5d69cc6e9b218545f4edaccf5ba9ab537eb43e9499cfaf7ff62597bfc8893
crc32: 95D6B465
md5: 257d813f5033e7affe03d7c49c968958
sha1: 89bbb2f22f28e502c0cfe52ef5cc8dff8002bf18
sha256: c0f5d69cc6e9b218545f4edaccf5ba9ab537eb43e9499cfaf7ff62597bfc8893
sha512: a2939b3ecb30321fcfeaf6b5eb06a0d957ef6218b41ca95327afd94df9c018aafa93807eda46bef4dcd2db5212d14e4f05a3b45e5502051697f740802668aa94
ssdeep: 49152:MzqFExqSjHJ3uTFxhrFzesDUcf2myTp6VPcTT2nQ:aHbsDVQ
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T17BB56A13E25504DAD29AC078DE46D232EB217C5D47F2A1FF3290AA563E77AD03B3A711
sha3_384: 6d58b859804c2e5c44aa88ca17d5c7f83ef39386fdcce8ec6332a8ae3b775ffd3b18f06a4ef9ab49dc5603bfd6ca0c1a
ep_bytes: 4883ec28e80b0000004883c428e97afe
timestamp: 2021-07-30 19:13:12

Version Info:

CompanyName: Google LLC
FileDescription: Google Chrome
FileVersion: 92.0.4515.131
InternalName: chrome_exe
LegalCopyright: Copyright 2021 Google LLC. All rights reserved.
OriginalFilename: chrome.exe
ProductName: Google Chrome
ProductVersion: 92.0.4515.131
CompanyShortName: Google
ProductShortName: Chrome
LastChange: 6b8d6c56ce21e38a72f7c4becb5abc1fa5134f29-refs/branch-heads/4515@#1933
Official Build: 1
Translation: 0x0409 0x04b0

Bulz.656420 (B) also known as:

LionicTrojan.Win32.Bulz.4!c
MicroWorld-eScanGen:Variant.Bulz.656420
FireEyeGen:Variant.Bulz.656420
McAfeeArtemis!257D813F5033
BitDefenderGen:Variant.Bulz.656420
Ad-AwareGen:Variant.Bulz.656420
McAfee-GW-EditionArtemis
EmsisoftGen:Variant.Bulz.656420 (B)
GDataGen:Variant.Bulz.656420
JiangminTrojan.Agent.dqac
AviraHEUR/AGEN.1142336
Antiy-AVLTrojan/Generic.ASMalwS.34B5BE1
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ALYacGen:Variant.Bulz.656420
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002H09KO21
IkarusTrojan.Win32.Rbot
FortinetW32/PossibleThreat

How to remove Bulz.656420 (B)?

Bulz.656420 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment