Malware

Should I remove “Bulz.831785”?

Malware Removal

The Bulz.831785 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.831785 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • Anomalous binary characteristics

How to determine Bulz.831785?


File Info:

name: F605761FFF47317F2E74.mlw
path: /opt/CAPEv2/storage/binaries/4352040840e3955526857901dcc9087d23d4d9c2594cf3b3bd94fd6dfee1084e
crc32: 29B33FDE
md5: f605761fff47317f2e74d32ea59f09c9
sha1: 6f972139cc531d2afbc8fd24daedfa9a6bb18087
sha256: 4352040840e3955526857901dcc9087d23d4d9c2594cf3b3bd94fd6dfee1084e
sha512: 9cd7704a8f483c1d4a210b3229553e27fa73fd609e604449266a65fbfe1a6763050d0e91fc0edc6d95d31c75d469e2a6f05b30c2cc88ab10a9536310439f62ee
ssdeep: 24576:deDLVHx7GYTDYuDTk+Vx6hNMT/8TsH35DMw2n/qIjtAT3GzP9zWm8sW:0tHIYTcwTvVMh4/8A35DMnCIjtAyzP9O
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D76538117AE152FDFDB31630DAB9A278647ABC711821E10B339C364D4F70E919A27B63
sha3_384: 477a8d14b9a7a29a88273416fbf28105f4bf1a97fb96d956220f6535e757c8eb4e9904b222a8dfbe9e1f79a4ee26c9a4
ep_bytes: e81c040000e978feffffe9fa0b000055
timestamp: 2021-02-15 03:10:06

Version Info:

Comments:
CompanyName: Adobe Systems Incorporated
FileDescription: Adobe Acrobat SpeedLauncher
FileVersion: 21.1.20138.422477
LegalCopyright: Copyright 1984-2021 Adobe Systems Incorporated and its licensors. All rights reserved.
ProductName: Adobe Acrobat
ProductVersion: 21.1.20138.422477
OriginalFilename: AcroSpeedLaunch.exe
Translation: 0x0409 0x04e4

Bulz.831785 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Bulz.4!c
MicroWorld-eScanGen:Variant.Bulz.831785
FireEyeGeneric.mg.f605761fff47317f
McAfeeArtemis!F605761FFF47
CylanceUnsafe
CyrenW32/Ipamor.DB.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R03BH0CL621
ClamAVWin.Trojan.Generic-9865438-0
BitDefenderGen:Variant.Bulz.831785
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Bulz.831785
McAfee-GW-EditionBehavesLike.Win32.Autorun.th
EmsisoftGen:Variant.Bulz.831785 (B)
IkarusVirus.Win32.Fakefire
GDataGen:Variant.Bulz.831785
JiangminPacked.Krap.gvwo
MAXmalware (ai score=84)
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Bulz.DCB129
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.831785
SentinelOneStatic AI – Malicious PE
FortinetW32/Ipamor.8ED1!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Bulz.831785?

Bulz.831785 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment