Malware

Should I remove “Bulz.115316 (B)”?

Malware Removal

The Bulz.115316 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.115316 (B) virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

How to determine Bulz.115316 (B)?


File Info:

crc32: EE8B3FA8
md5: 30e858c8e80e4762390de41f15fdb45f
name: 30E858C8E80E4762390DE41F15FDB45F.mlw
sha1: 96a8bedfdf57213922512a53948d84221ac32099
sha256: d0274c57e7a66ddbf186ea0167d6c08a91a3dd9d866a7627fe2bb04e935807cc
sha512: da705a1140778066c66713a427c7fed17b382a1c9457cc01ac5923f49e0def8d2883460ef9ca436b9581d19a2981f67cedf2595ea176136ffa9032463cca576a
ssdeep: 6144:A6LwFnQ+VoVJYCsy7cSuvqEsbH8OnMlzpDCJJTRlmYDsm:badWxxEAc+ysJJNlrX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0c0a 0x04b0
InternalName: stub
FileVersion: 860.655.4356
CompanyName: Ro
ProductName: rerererr
ProductVersion: 860.655.4356
OriginalFilename: stub.exe

Bulz.115316 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3991 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.UFR.3136
CynetMalicious (score: 100)
CAT-QuickHealTrojan.VBInject.WR3
ALYacGen:Variant.Bulz.115316
CylanceUnsafe
ZillyaBackdoor.DarkKomet.Win32.14695
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/DarkKomet.8e4bdd6d
K7GWTrojan ( 0055e3991 )
Cybereasonmalicious.8e80e4
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.BEOO
APEXMalicious
AvastWin32:Malware-gen
KasperskyBackdoor.Win32.DarkKomet.bvlo
BitDefenderGen:Variant.Bulz.115316
NANO-AntivirusTrojan.Win32.DarkKomet.feprdp
MicroWorld-eScanGen:Variant.Bulz.115316
TencentMalware.Win32.Gencirc.10c99aef
Ad-AwareGen:Variant.Bulz.115316
SophosML/PE-A
BitDefenderThetaGen:NN.ZevbaF.34628.ym3@aSrYHmL
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.30e858c8e80e4762
EmsisoftGen:Variant.Bulz.115316 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/DarkKomet.exe
AviraTR/Dropper.Gen
MicrosoftPWS:Win32/Zbot.GG!MTB
GDataGen:Variant.Bulz.115316
AhnLab-V3Trojan/Win32.Zbot.R102020
McAfeeGenericRXGE-UR!30E858C8E80E
MAXmalware (ai score=89)
VBA32Backdoor.DarkKomet
MalwarebytesMalware.AI.2325130949
PandaTrj/Genetic.gen
RisingMalware.Zbot!8.E95E (CLOUD)
IkarusBackdoor.Win32.Xtrat
FortinetW32/Filecoder_CTBLocker.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM03.0.FF8F.Malware.Gen

How to remove Bulz.115316 (B)?

Bulz.115316 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment