Malware

Bulz.863289 removal

Malware Removal

The Bulz.863289 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.863289 virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Bulz.863289?


File Info:

crc32: 806921FF
md5: 1f16d41b53b6600dab8f91e5384eed74
name: 1F16D41B53B6600DAB8F91E5384EED74.mlw
sha1: b2d24267025acaa0409824d7909d13a0ccf62f54
sha256: 2663e0661adb82d88cfc813a5ff5ff069b55ce474ebd1e8eda31e36987b2d4a6
sha512: 4cbd83336051a1090f503b382032632988e1868840050735571c9bcc56ed33b79de47e54c1435e8d7d956061959fd5f7b2a3b5be8a99d70f2446ffde67f54173
ssdeep: 12288:KxMGNTCWsTGQ44Ru1IgekVK7qZUMpyLzfAIKf:KxD+MIgeko7na
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 2015 Microsoft Corporation. All rights reserved.
InternalName: AppVDllSurrogate
FileVersion: 5.1.125.0
CompanyName: Microsoft Corporation
PrivateBuild: RTM (by sftbuild on MBAMR02BLD02)
LegalTrademarks: Microsoftxae is a registered trademark of Microsoft Corporation.
ProductName: Microsoft Application Virtualization (App-V)
ProductVersion: 5.1.125.0
FileDescription: AppVDllSurrogate64
OriginalFilename: AppVDllSurrogate64.exe
Translation: 0x0409 0x04b0

Bulz.863289 also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.Dqan-9884908-0
ALYacGen:Variant.Bulz.863289
BitDefenderGen:Variant.Bulz.863289
Cybereasonmalicious.b53b66
CyrenW64/Ipamor.BM.gen!Eldorado
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Bulz.863289
Ad-AwareGen:Variant.Bulz.863289
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.dm
FireEyeGen:Variant.Bulz.863289
EmsisoftGen:Variant.Bulz.863289 (B)
AviraHEUR/AGEN.1143081
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Bulz.863289
McAfeeArtemis!1F16D41B53B6
MAXmalware (ai score=81)
TrendMicro-HouseCallTROJ_GEN.R03BH0CJU21
IkarusTrojan.Agent
FortinetW32/Ipamor.8C98!tr

How to remove Bulz.863289?

Bulz.863289 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment