Malware

About “Bulz.795299” infection

Malware Removal

The Bulz.795299 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.795299 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Bulz.795299?


File Info:

name: 25466212ECBE1B584FCC.mlw
path: /opt/CAPEv2/storage/binaries/67250067abf15b4e224e39c7c94c8ffc250d3c32c967179177d23ca96786dd9e
crc32: C24A6418
md5: 25466212ecbe1b584fcc326ca3860213
sha1: b98fa65c917872c92fe5347ca2f832bfeabb00b0
sha256: 67250067abf15b4e224e39c7c94c8ffc250d3c32c967179177d23ca96786dd9e
sha512: 0ac32e22764dbb966600e2c9b116fc05bc9fd27b87b04008229e721c84e55bb7f0e494ce9ff431544513be04a7da598eda4ac5a954da0fde929f784afc50e6c1
ssdeep: 49152:vXHoJdXN0BMOwLloBrugof+CIabjKoh9Wj:vXIJdXN0B7+sizIabjKoh9Wj
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T170D54A026A449871DC2E0DB165859331F9A1BCBF7E2E730BBF40B7294EB35C16E66523
sha3_384: f83375af77873530d3b21817e5bdbec7f00c68c8da80a482274bcd82247bceed2009ae53c665ac055b31609871275167
ep_bytes: 4883ec28e8bf0200004883c428e972fe
timestamp: 2020-12-09 14:10:09

Version Info:

CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 8.0.2810.9
Full Version: 1.8.0_281-b09
InternalName: jjs
LegalCopyright: Copyright © 2020
OriginalFilename: jjs.exe
ProductName: Java(TM) Platform SE 8
ProductVersion: 8.0.2810.9
Translation: 0x0000 0x04b0

Bulz.795299 also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
MicroWorld-eScanGen:Variant.Bulz.795299
FireEyeGen:Variant.Bulz.795299
ALYacGen:Variant.Bulz.795299
CylanceUnsafe
CyrenW64/Ipamor.DF.gen!Eldorado
SymantecTrojan.Gen.MBT
ClamAVWin.Malware.Filerepmalware-9859683-0
BitDefenderGen:Variant.Bulz.795299
AvastWin32:VB-FBX
RisingWorm.VB!1.DA41 (CLASSIC)
Ad-AwareGen:Variant.Bulz.795299
EmsisoftGen:Variant.Bulz.795299 (B)
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.vm
SophosGeneric ML PUA (PUA)
IkarusTrojan.Autorun
GDataGen:Variant.Bulz.795299
JiangminPacked.Krap.gvyf
AviraHEUR/AGEN.1145262
Antiy-AVLTrojan/Generic.ASMalwS.34BD211
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!25466212ECBE
MAXmalware (ai score=83)
MalwarebytesMalware.AI.3696146603
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
AVGWin32:VB-FBX
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Bulz.795299?

Bulz.795299 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment