Malware

Bulz.878902 removal tips

Malware Removal

The Bulz.878902 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.878902 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • CAPE detected the PyInstaller malware family

How to determine Bulz.878902?


File Info:

name: F1C8C355E5043A85CB55.mlw
path: /opt/CAPEv2/storage/binaries/985947b8e79a5fd3dc75df47bd705d6ec65ab001bdc98799156c920faf833e96
crc32: 35C7F561
md5: f1c8c355e5043a85cb55eff38b8e8569
sha1: 83d2c54b27be3504cc69b101f642cbc5a3966cf9
sha256: 985947b8e79a5fd3dc75df47bd705d6ec65ab001bdc98799156c920faf833e96
sha512: db59b40bcf77fa3df120aaefbabd133561dc4e8f7281f3c6e1652cca3decc16f9a36749ef1dfd08cb01f397f5083f43077ae9221e98bfb4fb3cca31362408591
ssdeep: 98304:q9L6AuLqcgEYFzPhKtWRE93xqztzHzZqu3wyqgcOhpGJcoEJpjV2RmpPdIU:c9GqFFjsoE9AFzAXDMJdmm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A45633551C504033E1E4243D1AF5E979B82DB5DF4B348CAF8954623B7CB3EFA98B1AA0
sha3_384: a0073c75c74d956e608272636fe1b78454360e85707f5e79ad604db07d124df79aad92204074bae91c7db1cf7780fc37
ep_bytes: e8a0040000e97afeffff558bec6a00ff
timestamp: 2021-10-20 14:15:09

Version Info:

0: [No Data]

Bulz.878902 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Bulz.4!c
MicroWorld-eScanGen:Variant.Bulz.878902
FireEyeGen:Variant.Bulz.878902
ALYacGen:Variant.Bulz.878902
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Bulz.878902
AvastFileRepMetagen [Malware]
Ad-AwareGen:Variant.Bulz.878902
EmsisoftGen:Variant.Bulz.878902 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
GDataGen:Variant.Bulz.878902
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Bulz.DD6936
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
McAfeeArtemis!F1C8C355E504
MAXmalware (ai score=81)
TrendMicro-HouseCallTROJ_GEN.R002H09KS21
FortinetW32/PossibleThreat
BitDefenderThetaAI:Packer.E1CB34C121
AVGFileRepMetagen [Malware]

How to remove Bulz.878902?

Bulz.878902 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment