Malware

Bulz.848526 malicious file

Malware Removal

The Bulz.848526 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.848526 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Bulz.848526?


File Info:

crc32: 3E42F5FC
md5: 5293ab5d6a03ccd223d777b6501e2c72
name: 5293AB5D6A03CCD223D777B6501E2C72.mlw
sha1: de399f92faf2f247f9ff9c72e4f024d7d0b4fe9c
sha256: b0fc790196bb2fbfe6b608b6f611dd7a16d439cf8a384685abaa57ac037817ed
sha512: bbf940eb9d0c1199571529f4eca3e8b9fef43e48bb1712fc5aefc109df3d963bb5b71c15cb0884a1e10c8e1813a7d8cb0e50f617bc41acb55f3b538d418b9d26
ssdeep: 6144:i2vTuoDjtU7S9znmsRmIu7cCdM7E4L8OWJgrxisjVJmMmvoHDT0nRy:1Tl6QzmsMXceqrWW9vZJmMmAjT0n
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: SiteIdentityPermissionAttribu.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Console Game
ProductVersion: 1.0.0.0
FileDescription: Console Game
OriginalFilename: SiteIdentityPermissionAttribu.exe

Bulz.848526 also known as:

Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.848526
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Bulz.848526
SymantecScr.Malcode!gdn30
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan-PSW.Multi.GenericML.xnet
MicroWorld-eScanGen:Variant.Bulz.848526
Ad-AwareGen:Variant.Bulz.848526
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34236.ym0@aGrxxwc
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.5293ab5d6a03ccd2
EmsisoftGen:Variant.Bulz.848526 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Bulz.848526
McAfeeArtemis!5293AB5D6A03
MAXmalware (ai score=89)
MalwarebytesMachineLearning/Anomalous.100%
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Tesla.FIVJ!tr

How to remove Bulz.848526?

Bulz.848526 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment