Malware

Bulz.859304 removal

Malware Removal

The Bulz.859304 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.859304 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Bulz.859304?


File Info:

name: 385069412F4F62ED6983.mlw
path: /opt/CAPEv2/storage/binaries/92ea135eef8057f354902c7b5603dd1baeeb1da8529aa2552c8a91157baf7966
crc32: B2F1CC8A
md5: 385069412f4f62ed69838641ef185275
sha1: 18fbb7507228a7fe7e21a8d96b8c67564ab69607
sha256: 92ea135eef8057f354902c7b5603dd1baeeb1da8529aa2552c8a91157baf7966
sha512: 2c056f4b271aedcb29179f9d6a7d23b2b4d85894e5f40398c2658eb580fe2576c7df8d3ef0412645dd706d3ab74bfe12706db81df0c6db557c5368c5bc764a41
ssdeep: 49152:fwEGTDkYOMwwnMb4PmyV8Ep6VhKPgssSt2gB:3YOXwnS4rVPpQhv7StX
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T155C5280EFFE58C79E5B3263099B5932D5676BDA05B35868F22843A1ED970F809931333
sha3_384: c854f897e671f52f8ca645c32513571d104e3bd87a2a5182c80d265ff9492915d68651d6cd86ae7ea113ce1eff1502b3
ep_bytes: 4883ec28e8db0500004883c428e95afe
timestamp: 2080-06-22 19:24:22

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Malware Protection DLP Command Line Utility
FileVersion: 4.18.2102.3 (WinBuild.160101.0800)
InternalName: MpDlpCmd
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: MpDlpCmd.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 4.18.2102.3
Translation: 0x0409 0x04b0

Bulz.859304 also known as:

MicroWorld-eScanGen:Variant.Bulz.859304
McAfeeArtemis!385069412F4F
ZillyaWorm.AutoRun.Win32.180132
CrowdStrikewin/malicious_confidence_60% (W)
TrendMicro-HouseCallTROJ_GEN.R03BH09L921
ClamAVWin.Trojan.Blackie-9884258-0
BitDefenderGen:Variant.Bulz.859304
Ad-AwareGen:Variant.Bulz.859304
McAfee-GW-EditionBehavesLike.Win64.BadFile.vh
FireEyeGen:Variant.Bulz.859304
EmsisoftGen:Variant.Bulz.859304 (B)
IkarusExploit.Win32.RpcDcom
GDataGen:Variant.Bulz.859304
JiangminTrojan.Injector.eb
MAXmalware (ai score=82)
ArcabitTrojan.Bulz.DD1CA8
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.859304
FortinetPossibleThreat.PALLAS.H

How to remove Bulz.859304?

Bulz.859304 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment