Malware

Should I remove “Bulz.825493 (B)”?

Malware Removal

The Bulz.825493 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.825493 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine Bulz.825493 (B)?


File Info:

name: 04245F4EED3BFF9CF606.mlw
path: /opt/CAPEv2/storage/binaries/12b06fa5b76e116d58934de4bfd4a2fc9971f79202fc7578a7a553bfdfd69fba
crc32: 75ABDF59
md5: 04245f4eed3bff9cf606f50b1ee435ff
sha1: bca668f8812f9053369e812bbc936cab9ddd7332
sha256: 12b06fa5b76e116d58934de4bfd4a2fc9971f79202fc7578a7a553bfdfd69fba
sha512: a05c83355c67e0edcebca48b14fc4535b7264231229bbd58ac0e5d474500f8089f7d1d5ea463f1c92d93c982810bc6cc53057c7013502a3369a944ad68d9dac1
ssdeep: 3072:CGmIJ9qfvS/R+Y8DaZT2k9Hc3/nl6LAHkzI1UfgEA6IIyRi7Ji+:f3J9lz8zk96kADii+
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T107F39E48B242856AC66E927C89BB5B266575BC1043245FCF92D4EF363D60EC13E32B1E
sha3_384: 8bf4c70ea51bc0f07e720e6c0bbc56a9d8469c6521ddba306b25103462f38e32ed62002fa19d7bf56e94901bd653dd93
ep_bytes: 4883ec28c705c2ed000001000000e81d
timestamp: 1970-01-01 00:00:00

Version Info:

CompanyName: VideoLAN
ProductName: VLC media player
ProductVersion: 2,1,3,0
InternalName: vlc
OriginalFilename: vlc.exe
FileVersion: 2.1.3
FileDescription: VLC media player 2.1.3
LegalCopyright: Copyright © 1996-2014 VideoLAN and VLC Authors
LegalTrademarks: VLC media player, VideoLAN and x264 are registered trademarks from VideoLAN
Translation: 0x0409 0x04e4

Bulz.825493 (B) also known as:

MicroWorld-eScanGen:Variant.Bulz.825493
FireEyeGen:Variant.Bulz.825493
ALYacGen:Variant.Bulz.825493
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 00584baa1 )
BitDefenderGen:Variant.Bulz.825493
K7GWRiskware ( 00584baa1 )
CyrenW64/Ipamor.CP.gen!Eldorado
TrendMicro-HouseCallTROJ_GEN.R002H09KN21
ClamAVWin.Packed.Generic-7602836-0
Ad-AwareGen:Variant.Bulz.825493
ZillyaTrojan.Scar.Win32.142219
McAfee-GW-EditionBehavesLike.Win64.Injector.ch
EmsisoftGen:Variant.Bulz.825493 (B)
JiangminTrojan.Scar.szq
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftRansom.Win64.Wacatac.sa
GDataGen:Variant.Bulz.825493
CynetMalicious (score: 100)
McAfeeArtemis!04245F4EED3B
IkarusTrojan.Dropper
FortinetW64/Agent.84E4!tr
WebrootW32.Trojan.Tr.Crypt.Xpack

How to remove Bulz.825493 (B)?

Bulz.825493 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment