Malware

Bulz.831785 (B) information

Malware Removal

The Bulz.831785 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.831785 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • Anomalous binary characteristics

How to determine Bulz.831785 (B)?


File Info:

name: 864F129CBC4FEEDD87B1.mlw
path: /opt/CAPEv2/storage/binaries/0cfda2697b1e845538d6a10498227b990742cf9e6c070b84ad0693d62082f64e
crc32: D1B98708
md5: 864f129cbc4feedd87b11ab277a9e7aa
sha1: 8e072ae3234e761d686e1884f6012b7cbc3c6fac
sha256: 0cfda2697b1e845538d6a10498227b990742cf9e6c070b84ad0693d62082f64e
sha512: 6a72f7ea579bb32db4e28407b3ab08a9b9333f94cb7c6e979a8ed4c8a06d20838c29d7631e2262a6a7643fff943ea87f0b58c884a36ab5914596cde3ecf1ad26
ssdeep: 24576:de5t1I7bL8iHFLHgZpJELaewsAjg7XVav9Mk:05SLnHFLHkJEuljxv9M
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10D559D12BA60C832E56649350A65A31D67397921CB138FC3A3A46FCDFFF16C15B39236
sha3_384: d8c247544de9d7c6c452cf1372448d7b0b32c5c2736a3d519aaebbf9b43abb6f498e1ac9579e3f25535724c054ee0ab9
ep_bytes: e81c040000e978feffffe9fa0b000055
timestamp: 2021-02-15 03:10:06

Version Info:

Comments:
CompanyName: Adobe Systems Incorporated
FileDescription: Adobe Acrobat SpeedLauncher
FileVersion: 21.1.20138.422477
LegalCopyright: Copyright 1984-2021 Adobe Systems Incorporated and its licensors. All rights reserved.
ProductName: Adobe Acrobat
ProductVersion: 21.1.20138.422477
OriginalFilename: AcroSpeedLaunch.exe
Translation: 0x0409 0x04e4

Bulz.831785 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.831785
FireEyeGeneric.mg.864f129cbc4feedd
CylanceUnsafe
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/Emotet.BBS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ClamAVWin.Ransomware.WannaCry-9856297-0
BitDefenderGen:Variant.Bulz.831785
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Bulz.831785
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.th
EmsisoftGen:Variant.Bulz.831785 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1V6HZ6L
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.831785
MAXmalware (ai score=88)
TrendMicro-HouseCallTROJ_GEN.R03BH0CLN21
IkarusOlext.Win32
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Ipamor.8ED1!tr
AVGWin32:Malware-gen

How to remove Bulz.831785 (B)?

Bulz.831785 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment