Malware

Bulz.926846 removal tips

Malware Removal

The Bulz.926846 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.926846 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Bulz.926846?


File Info:

name: 225FBAA3B465A0053605.mlw
path: /opt/CAPEv2/storage/binaries/587d464e77f4a5260545750bd97499ee028a212c0fdcdce36f9881eab6d703ba
crc32: 8E7FDB5D
md5: 225fbaa3b465a0053605d0dbb1842df0
sha1: 262ec9a1cca3708b1e77c0bd1b1c7f51c6252d14
sha256: 587d464e77f4a5260545750bd97499ee028a212c0fdcdce36f9881eab6d703ba
sha512: 1754e574021bd871419bffceafa68a49d66a6c2eeee6fab6d0cbfe3df537152c60287ff7859d8611abeb200fc67f80a39c8858a9342ce2dcdbcc9f0dc3965238
ssdeep: 98304:P8tR+CgameUJF3noxDiJdXN0B7+sPhv7St8DF3DF:Ejm32/vU
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1C36693126EDE9631DC7F3D308F7CC2D811607C9099A6E9162DD07E9DEAB21C8791E623
sha3_384: 5701c0e51a7d79b45b469054509ef5a95bbc5df4621895e6f747397c2eddef6bc431594098a7ae0f9491070f41120771
ep_bytes: 40534883ec20488bd9e88a050000488b
timestamp: 2100-03-02 06:33:42

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Client Server Runtime Process
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
InternalName: CSRSS.Exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: CSRSS.Exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.17134.1
Translation: 0x0409 0x04b0

Bulz.926846 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.926846
FireEyeGeneric.mg.225fbaa3b465a005
McAfeeArtemis!225FBAA3B465
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (W)
ArcabitTrojan.Bulz.DE247E
BitDefenderThetaAI:Packer.DFF53E5D1C
CyrenW64/Ipamor.CZ.gen!Eldorado
CynetMalicious (score: 100)
BitDefenderGen:Variant.Bulz.926846
AvastWin64:Malware-gen
Ad-AwareGen:Variant.Bulz.926846
EmsisoftGen:Variant.Bulz.926846 (B)
SophosML/PE-A
IkarusTrojan.Dropper
JiangminPacked.Krap.gvuf
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Bulz.926846
VBA32Trojan.VBKrypt
ALYacGen:Variant.Bulz.926846
MAXmalware (ai score=89)
MalwarebytesMalware.AI.3696146603
RisingWorm.VB!1.DA41 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW64/Bulz.6330!tr
AVGWin64:Malware-gen

How to remove Bulz.926846?

Bulz.926846 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment