Malware

Bulz.855934 removal guide

Malware Removal

The Bulz.855934 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.855934 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Bulz.855934?


File Info:

crc32: 5C3ABBB8
md5: 177450e91044cc28e608288cf7d5ded9
name: 177450E91044CC28E608288CF7D5DED9.mlw
sha1: 4a0d43fc70c19c59fb27b0b00f2b61471bdd9b3d
sha256: 5f8d0a453323e0edb8e2b5406c91042602c142655e67a589d590b068abe822be
sha512: 03badb6c390376998f9c40791c9ccd7d21e3eda56eda65d27269d84486fba3f3f7b0f5508eb40d1aae8ddcd5a5ab0fe0e7371e0779e7c5eb42252e5b269f1df3
ssdeep: 12288:uaHc64b888888888888W88888888888mhRqLz7qEC5mdv/fQqDjxiZl8zAeONQ97:F86f6zOE2mpJ91BoQ9uZUR+zZdQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion: 62.04.44
CompanyName: CZ0uDOQYIGYCTSUrmD5g
Comments: This installation was built with Inno Setup.
ProductName: CZ0uDOQYIGYCTSUrmD5g
ProductVersion: 62.04.44
FileDescription: CZ0uDOQYIGYCTSUrmD5g
Translation: 0x0000 0x04b0

Bulz.855934 also known as:

BkavW32.AIDetect.malware2
LionicAdware.Script.Generic.2!c
DrWebTrojan.BPlug.3811
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.213045
CylanceUnsafe
AlibabaTrojan:Win32/ExtInstaller.5c3e738e
Cybereasonmalicious.91044c
SymantecTrojan.Gen.2
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Bulz.855934
NANO-AntivirusRiskware.Win32.ExtInstaller.glkoas
MicroWorld-eScanGen:Variant.Bulz.855934
SophosMal/Generic-S
ComodoMalware@#1xy0xrs013c1m
BitDefenderThetaGen:NN.ZedlaF.34294.gu8@aaM6dNpk
McAfee-GW-EditionBehavesLike.Win32.Dropper.jc
FireEyeGen:Variant.Bulz.855934
EmsisoftGen:Variant.Bulz.855934 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1109568
Antiy-AVLTrojan/Generic.ASMalwS.2C21E56
MicrosoftTrojan:JS/Redirector
ArcabitTrojan.Bulz.DD0F7E
GDataGen:Variant.Bulz.213045
McAfeeArtemis!177450E91044
MAXmalware (ai score=100)
VBA32Trojan.BPlug
MalwarebytesAdware.ExtenBro
PandaTrj/CI.A
YandexPUA.ExtInstaller!pK3JgMcwl4Y
IkarusTrojan.Win32.Skeeyah
FortinetW32/ExtenBro.EU!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Bulz.855934?

Bulz.855934 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment