Malware

Bulz.713581 information

Malware Removal

The Bulz.713581 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.713581 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Bulz.713581?


File Info:

crc32: 1CFE1E6D
md5: 3a5007627fe2f16eb7d43a3a162f5799
name: 3A5007627FE2F16EB7D43A3A162F5799.mlw
sha1: 3f49d3c5b2184c3f8aede1f3804d9351f2b355da
sha256: f27d8ecd97b279ae486985ca36102f846c2e90bf4757c6e19fa36f68f60799dd
sha512: 91e7c3237fd35adfa853b5516746949875cc5cd0bf7c834f74c4404686ba6528b050d93e4e7b76b263b0ea42cc7fe9bdd17fde27826b5040172d13371c720605
ssdeep: 6144:MCSyiCemRDg+DoN97BHC/upvLX9fjvqi6r2UibB9P2tvR39SS/nmwA//S+HjsDXj:xLimDg+DEkupvLX9Lqi6rni6tvR39SS/
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: QWallpaper.dll
FileVersion: 1.0.0.1
CompanyName: x9ec4x5188x817ex745ex7f51x7edcx79d1x6280x4e2dx5fc3
ProductName: x8054x7cfbx6211x4eechttp://show.sitdown.top/feedback/
ProductVersion: 1.0.0.1
FileDescription: OmegaDesk
OriginalFilename: OmegaDesk.dll
Translation: 0x0804 0x04b0

Bulz.713581 also known as:

LionicAdware.Win32.Softcnapp.2!c
DrWebAdware.Softcnapp.174
McAfeeArtemis!3A5007627FE2
CylanceUnsafe
ZillyaAdware.Softcnapp.Win32.141
SangforAdware.Win32.Softcnapp.gen
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaAdWare:Win32/Softcnapp.746c192d
K7GWAdware ( 00587e7b1 )
K7AntiVirusAdware ( 00587e7b1 )
CyrenW32/Trojan.REAU-7613
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Softcnapp.BK potentially unwanted
AvastWin32:Adware-gen [Adw]
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:AdWare.Win32.Softcnapp.gen
BitDefenderGen:Variant.Bulz.713581
NANO-AntivirusRiskware.Win32.Softcnapp.jbekjw
MicroWorld-eScanGen:Variant.Bulz.713581
Ad-AwareGen:Variant.Bulz.713581
SophosGeneric PUA DP (PUA)
McAfee-GW-EditionArtemis!PUP
FireEyeGen:Variant.Bulz.713581
EmsisoftGen:Variant.Bulz.713581 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Softcnapp.ca
MicrosoftPUA:Win32/Softcnapp
ArcabitTrojan.Bulz.DAE36D
GDataGen:Variant.Bulz.713581
VBA32Adware.Softcnapp
MAXmalware (ai score=85)
MalwarebytesPUP.Optional.Softcnapp
TrendMicro-HouseCallTROJ_GEN.R06CH07IG21
RisingAdware.Agent!1.CE32 (CLASSIC)
IkarusTrojan-Downloader.Win32.Chindo
MaxSecureTrojan.Malware.103451526.susgen
FortinetRiskware/Softcnapp
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Bulz.713581?

Bulz.713581 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment