Malware

How to remove “Bulz.949227”?

Malware Removal

The Bulz.949227 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.949227 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Bulz.949227?


File Info:

name: 638699442CA05E12FA61.mlw
path: /opt/CAPEv2/storage/binaries/d3fbfb28165acee97c99841a0e356a6b1d6a2341b87e7e3952ca2cb62adc72ce
crc32: 0686EFA1
md5: 638699442ca05e12fa6132055c77a93a
sha1: ed1deb1d0b970da8f2f77c3201d77574cd534703
sha256: d3fbfb28165acee97c99841a0e356a6b1d6a2341b87e7e3952ca2cb62adc72ce
sha512: d8644a604762d935f3fca03d51bd43611821c9846c12efd7db34ae3570a8463caf20689de0307dfa8d49109301b2c8d4900831d896d78fe6786a07c0e1e95793
ssdeep: 768:LAF40QQfPD/eR9FGcNrLneWnBcdGwGDgwgamglNrA9b3i:e48cnGcx/BcgHDBgMlN0b3i
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2234EE9F7770B3BCB5C88B59129532A327563F32B45FA895DA874C09521EC87A03F42
sha3_384: 416ae65d7978c1c1abc4697348710cc1633c59a4d1fa9c64ef69448e3d51adc53247997e927ea9b42005fc3e7cf672fa
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-11-10 22:14:28

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: WindowsFormsApplication9
FileVersion: 1.0.0.0
InternalName: WindowsFormsApplication9.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: WindowsFormsApplication9.exe
ProductName: WindowsFormsApplication9
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.949227 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.GenericML.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.638699442ca05e12
SkyhighBehavesLike.Win32.Generic.pm
ALYacGen:Variant.Bulz.949227
MalwarebytesGeneric.Malware/Suspicious
SangforTrojan.Win32.Agent.Vkhe
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZemsilF.36680.cm0@aeoWANd
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
KasperskyUDS:Trojan.Win32.GenericML.xnet
AvastWin32:TrojanX-gen [Trj]
KingsoftWin32.Trojan.GenericML.xnet
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
McAfeeArtemis!638699442CA0
Cylanceunsafe
RisingMalware.Obfus/MSIL@AI.84 (RDM.MSIL2:k+cv0OKilxc8lh9pThdiLQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMalicious_Behavior.SB
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.d0b970
DeepInstinctMALICIOUS

How to remove Bulz.949227?

Bulz.949227 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment