Malware

What is “Bulz.759655”?

Malware Removal

The Bulz.759655 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.759655 virus can do?

  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Bulz.759655?


File Info:

name: B19D29BD492E73053768.mlw
path: /opt/CAPEv2/storage/binaries/1b0668a6b39c41d2050013f41d7746148d66fc8af2954f087c840f40b8bc9c0c
crc32: 921A70C5
md5: b19d29bd492e73053768460d1bd106c9
sha1: 010f6e1968853ef88b5da7de67d79f8d4eedd70a
sha256: 1b0668a6b39c41d2050013f41d7746148d66fc8af2954f087c840f40b8bc9c0c
sha512: 94735ecbb3c9802b7afa379a240cdc6cdf48f7946cb06e51249e96bfd16cd93b46280bfcd747625e7e4632c5612369ba1132b3eb880672851baf0c60d7114d65
ssdeep: 384:8GPoESlg0GACf3TK352jTRp+p98SLk24jXPl+Ua3XEGQLLnxc9tYzWMe:8GP7b0GAECiG8O2XPfde
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T129B22B1863ED8236CCBD5775093296221B72ED119513EF6E4DE4B09F5EB33408FA27A2
sha3_384: 25cbcb708477a62392bbda3bd65563e8ca3a95b33870e55ab84aa9001b5b8c436a34c555ec684c5b34d58274cfa7b21d
ep_bytes: ff250020400000000000000000000000
timestamp: 2013-10-26 14:07:03

Version Info:

Translation: 0x0000 0x04b0
Comments: Microsoft
CompanyName: Microsoft
FileDescription: Windows
FileVersion: 3.2.5.9
InternalName: system32.exe
LegalCopyright: Copyright © Microsoft 2013
OriginalFilename: system32.exe
ProductVersion: 3.2.5.9
Assembly Version: 3.2.5.9

Bulz.759655 also known as:

LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.759655
FireEyeGeneric.mg.b19d29bd492e7305
McAfeeArtemis!B19D29BD492E
Cylanceunsafe
SangforTrojan.Win32.MSIL.12843
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Generic.e6a2a49a
BitDefenderThetaGen:NN.ZemsilF.36250.bq1@a4hj!Fk
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.PIG
APEXMalicious
ClamAVWin.Packed.Ursu-7083278-0
KasperskyTrojan.Win32.Agent.acnwn
BitDefenderGen:Variant.Bulz.759655
NANO-AntivirusTrojan.Win32.Agent.cyhmga
AvastWin32:Malware-gen
RisingDropper.Generic!8.35E (CLOUD)
EmsisoftGen:Variant.Bulz.759655 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Bulz.759655
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Bulz.759655
JiangminTrojan.Agent.csmy
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Agent
XcitiumMalware@#199mjlnoin5dy
ArcabitTrojan.Bulz.DB9767
ZoneAlarmTrojan.Win32.Agent.acnwn
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
VBA32Trojan.MSIL.gen.a.07
ALYacGen:Variant.Bulz.759655
MAXmalware (ai score=89)
MalwarebytesGeneric.Malware/Suspicious
PandaGeneric Malware
TencentWin32.Trojan.Agent.Wmhl
YandexTrojan.Agent!5gbQGehdBPw
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/Agent.ACNWN!tr
AVGWin32:Malware-gen
Cybereasonmalicious.d492e7
DeepInstinctMALICIOUS

How to remove Bulz.759655?

Bulz.759655 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment