Malware

What is “Bulz.870280 (B)”?

Malware Removal

The Bulz.870280 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.870280 (B) virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Bulz.870280 (B)?


File Info:

crc32: F19ED1A2
md5: debf6865e22b67da42a276b16d7d05d4
name: DEBF6865E22B67DA42A276B16D7D05D4.mlw
sha1: 3e1e24ac15ee3505a4b59804d52498898a11adaf
sha256: 76284c400db835bb108c1c8faab3ade1a74f759b93edaa234249be6da6a216df
sha512: 5d7c790e0a15b3a8c7acc9cfcd704504357ff7fcc449a8933cb4e4320d370000147f23fc3c2d0c163591d2cca86b194cb591acd0484db5b20c99dcec25f7f48b
ssdeep: 6144:be97hI8WGNTNYdMzATVkQNUO7q5NJLk+9cYWy4DswMtV+55oWmE6TusRjn4D3lO9:KxMGNTCWsTGQ4pLP2swnfoWmE1sR4DVq
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 2015 Microsoft Corporation. All rights reserved.
InternalName: AppVDllSurrogate
FileVersion: 5.1.125.0
CompanyName: Microsoft Corporation
PrivateBuild: RTM (by sftbuild on MBAMR02BLD02)
LegalTrademarks: Microsoftxae is a registered trademark of Microsoft Corporation.
ProductName: Microsoft Application Virtualization (App-V)
ProductVersion: 5.1.125.0
FileDescription: AppVDllSurrogate64
OriginalFilename: AppVDllSurrogate64.exe
Translation: 0x0409 0x04b0

Bulz.870280 (B) also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.Dqan-9884908-0
ALYacGen:Variant.Bulz.870280
BitDefenderGen:Variant.Bulz.870280
Cybereasonmalicious.5e22b6
CyrenW64/Ipamor.BM.gen!Eldorado
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Bulz.870280
Ad-AwareGen:Variant.Bulz.870280
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.tm
FireEyeGen:Variant.Bulz.870280
EmsisoftGen:Variant.Bulz.870280 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1143081
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Bulz.870280
McAfeeArtemis!DEBF6865E22B
MAXmalware (ai score=87)
TrendMicro-HouseCallTROJ_GEN.R03BH09JV21
IkarusTrojan.Agent
FortinetW32/Ipamor.8C98!tr

How to remove Bulz.870280 (B)?

Bulz.870280 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment