Malware

About “Bulz.103578” infection

Malware Removal

The Bulz.103578 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.103578 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Bulz.103578?


File Info:

crc32: EE74D44B
md5: 5b8725790125ed8d393d0a1881cffa6b
name: 5B8725790125ED8D393D0A1881CFFA6B.mlw
sha1: 424e530b75dc46fb3e53a14a8b474f0f1690fb0b
sha256: 590ebb9a7baf3d83979d58246c9a5483a0df7f222922a1a9977e66b4478b5402
sha512: a6d938ea35e3b97c2b696ed4ddbe3d6e32c11355cd11d6f70e0c5ad9bbea22b806fc554414061a43a412bda8e1522dd5af9d91cca2abbc1919083b9130995230
ssdeep: 192:didUZXd/C3CSsF1en3L/UVn1jE9e9q5UAfCZdOjbE4OtoC:didqd/HSewb/UVFE9e9qaABjMto
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: 3.39 trainer.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: 3.39 trainer.exe

Bulz.103578 also known as:

K7AntiVirusPassword-Stealer ( 005650e61 )
LionicTrojan.MSIL.PolyRansom.j!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.GrowtopiaNET.24
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MsilFC.S15904924
ALYacGen:Variant.Bulz.103578
CylanceUnsafe
ZillyaTrojan.Growtopia.Win32.1498
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/PolyRansom.e4584c6f
K7GWPassword-Stealer ( 005650e61 )
Cybereasonmalicious.90125e
CyrenW32/Ursu.BM.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Trojan.DiscordWebhookStealer-9850738-0
BitDefenderGen:Variant.Bulz.103578
NANO-AntivirusTrojan.Win32.Ransom.hqvase
MicroWorld-eScanGen:Variant.Bulz.103578
Ad-AwareGen:Variant.Bulz.103578
SophosMal/Generic-S
ComodoMalware@#2ss88keaouqst
BitDefenderThetaGen:NN.ZemsilF.34058.am0@aGyMWpc
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_PolyRansom.R002C0DDO21
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
FireEyeGeneric.mg.5b8725790125ed8d
EmsisoftGen:Variant.Bulz.103578 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.qbgh
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.30E7F14
ArcabitTrojan.Bulz.D1949A
MicrosoftTrojan:MSIL/Growtopia.ATR!MTB
AhnLab-V3Trojan/Win32.Razy.R348851
McAfeeArtemis!5B8725790125
MAXmalware (ai score=84)
VBA32TScope.Trojan.MSIL
MalwarebytesSpyware.PasswordStealer.Growtopia
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_PolyRansom.R002C0DDO21
TencentTrojan.Win32.Polyransom.yb
YandexTrojan.PWS.Growtopia!ZB5QuqXVe8c
IkarusTrojan.MSIL.PSW
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PolyRansom.GE!tr
AVGWin32:TrojanX-gen [Trj]
Qihoo-360Win32/Ransom.PolyRansom.HgIASOsA

How to remove Bulz.103578?

Bulz.103578 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment