Malware

About “Bulz.77269” infection

Malware Removal

The Bulz.77269 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.77269 virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Bulz.77269?


File Info:

name: B01A666758D6CEC8DEED.mlw
path: /opt/CAPEv2/storage/binaries/247cadb65723249ea3a335ce54c9d2d8c6b6cc9254cca10e7124eae4e5ff93d3
crc32: D13D9018
md5: b01a666758d6cec8deedcd669fc415b1
sha1: 7ffd1662f5511ee6b20fcd686faf6d1df349eda9
sha256: 247cadb65723249ea3a335ce54c9d2d8c6b6cc9254cca10e7124eae4e5ff93d3
sha512: 8e7230271402fa7f2c604ccff673f448adbffae990adff9ec03fbad83c720d6bb810b12bbcb6c731e0823d7b2210c2d0f6f77ef1d9ef7f9f20768b318f843be2
ssdeep: 49152:qzTvm+aur/Cp9h7ey8rVEOESnHU7KQfvKCK6XBAiFK+U+ZqFP:KTcoaiSJ++5fSCK63EP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DAD53364BFBEE4C9D11C8B71A1B2D74B5A9A11571FC32EBC03752E8101B91F69B00BE6
sha3_384: 520e4ab3d6e932e1d63b29e6f29954f8cef2e77c65b38aee23beb274adc161958ebc712a9e9ef528f353435520f1077e
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-04-27 00:56:20

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: BUILD.exe
LegalCopyright:
OriginalFilename: BUILD.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Bulz.77269 also known as:

LionicTrojan.MSIL.Dapato.b!c
MicroWorld-eScanGen:Variant.Bulz.77269
FireEyeGeneric.mg.b01a666758d6cec8
CAT-QuickHealTrojan.MsilFC.S22017790
McAfeeArtemis!B01A666758D6
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDropper:MSIL/Dapato.459ae396
K7GWTrojan ( 005806f21 )
K7AntiVirusTrojan ( 005806f21 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/CoinMiner.BJO
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Dropper.MSIL.Dapato.gen
BitDefenderGen:Variant.Bulz.77269
AvastWin32:DropperX-gen [Drp]
TencentMalware.Win32.Gencirc.115c865f
EmsisoftGen:Variant.Bulz.77269 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Bulz.77269
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Bulz.77269
JiangminTrojanDropper.MSIL.biww
AviraTR/Dropper.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan[Dropper]/MSIL.Dapato
ArcabitTrojan.Bulz.D12DD5
ZoneAlarmHEUR:Trojan-Dropper.MSIL.Dapato.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Dropper/Win.Generic.C4568562
Acronissuspicious
VBA32TScope.Trojan.MSIL
Cylanceunsafe
PandaTrj/GdSda.A
APEXMalicious
RisingDropper.Generic!8.35E (CLOUD)
IkarusTrojan.MSIL.CoinMiner
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Dapato!tr
BitDefenderThetaGen:NN.ZemsilF.36348.0o1@aWRxXHj
AVGWin32:DropperX-gen [Drp]
DeepInstinctMALICIOUS

How to remove Bulz.77269?

Bulz.77269 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment