Malware

Bulz.854567 malicious file

Malware Removal

The Bulz.854567 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.854567 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Bulz.854567?


File Info:

name: CF02A306C76561BE189C.mlw
path: /opt/CAPEv2/storage/binaries/67203284e565c669c79491f813ea7956c5d2e1a7be46994f25ae0663bc70dba0
crc32: F3AF0A68
md5: cf02a306c76561be189c3a6b01501d0a
sha1: 7d85e12b0d6a972c32283ab488d5c79f9128deaa
sha256: 67203284e565c669c79491f813ea7956c5d2e1a7be46994f25ae0663bc70dba0
sha512: 49e0f41f6523e4bdcfaacdb183d0efb5238ed717f10bc49f8a87a62670ff405a1bf38e442b669a92469e2b3cac6991356582160566c18094f1a9185f946cc934
ssdeep: 6144:Jjpk39ucR8vQ5LNz3CuQInTQY7Uf7ghLTozaHwABIuFke5g9lpfT7qx5XYdTARp2:Jjylivy5T9xEY7K7Vwn5gNsIdTkZq1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14865BBBD9B2000D1DC4D7AB89639A5175B640C5326ECF6CE3BEE28C5B39D4964D0BEC2
sha3_384: 8c826c843040013deb25f9e2e38d111cb94e6e4da4e24ffaf330d95049b0dc868f74e21ad81d30d04e1c74b4cf5b657c
ep_bytes: ff250020400000000000000000000000
timestamp: 2068-11-09 08:16:49

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Tropical Panel
FileVersion: 1.0.0.0
InternalName: Tropical Panel.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Tropical Panel.exe
ProductName: Tropical Panel
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.854567 also known as:

LionicTrojan.Win32.Bulz.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.854567
FireEyeGeneric.mg.cf02a306c76561be
ALYacGen:Variant.Bulz.854567
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Bulz.854567
Ad-AwareGen:Variant.Bulz.854567
McAfee-GW-EditionBehavesLike.Win32.Fareit.tm
EmsisoftGen:Variant.Bulz.854567 (B)
IkarusTrojan.Agent
MAXmalware (ai score=84)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftProgram:Win32/Uwamson.A!ml
GDataGen:Variant.Bulz.854567
CynetMalicious (score: 100)
McAfeeArtemis!CF02A306C765
TrendMicro-HouseCallTROJ_GEN.R002H09LA21
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazrKvmZiNCoXyeTNfLCBubpr)
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat.PALLAS.H
BitDefenderThetaGen:NN.ZemsilF.34084.Bn1@ai1Whnd
MaxSecureTrojan.Malware.300983.susgen

How to remove Bulz.854567?

Bulz.854567 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment