Malware

Bulz.147128 removal tips

Malware Removal

The Bulz.147128 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.147128 virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.147128?


File Info:

crc32: A7507C45
md5: 149d37ecec0ef23ceca7f09eccea87c6
name: 149D37ECEC0EF23CECA7F09ECCEA87C6.mlw
sha1: cb48ded4f88bd4859e4aa093ec5bd7c1212d146b
sha256: 1a37b7d07ffd32803c6987497a221afcd872c5e3c3880a67280c51a90c6ff244
sha512: 26d6c084ab9b0f1e497407270c103eedd3b5836be575a54b22327ac0de04c327037270e1a3e48ce75284be947e03eba43f4a84caca032f701079287231cb2a8c
ssdeep: 12288:Ojy2zz9GJ9bevftHK3pcs20bbhnj70eAT467koA:IyqFfVstPhnj70eAT4lz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: DnsIP
InternalName: dyndns
FileVersion: 1.01.0849
CompanyName: alidsqlptudllantpbgikckotpkijrwshkvf.Go
ProductName: IP Informer
ProductVersion: 1.01.0849
FileDescription: Dynamic DNS Server Informer for DNSIP System
OriginalFilename: dyndns.exe

Bulz.147128 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056f7b31 )
LionicAdware.Win32.Tpyn.2!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.147128
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaAdWare:Win32/Generic.e5192c4a
K7GWTrojan ( 0056f7b31 )
Cybereasonmalicious.cec0ef
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanClicker.VB.OJQ
APEXMalicious
AvastWin32:Malware-gen
Kasperskynot-a-virus:AdWare.Win32.Tpyn.hdr
BitDefenderGen:Variant.Bulz.147128
NANO-AntivirusRiskware.Win32.Tpyn.excytf
MicroWorld-eScanGen:Variant.Bulz.147128
TencentWin32.Adware.Tpyn.Dxxd
Ad-AwareGen:Variant.Bulz.147128
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.OJQ@81neh5
BitDefenderThetaGen:NN.ZevbaF.34266.gn0@aqtHdUck
TrendMicroTROJ_GEN.R002C0WK121
McAfee-GW-EditionBehavesLike.Win32.Trojan.tm
FireEyeGeneric.mg.149d37ecec0ef23c
EmsisoftGen:Variant.Bulz.147128 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1118789
Antiy-AVLTrojan/Generic.ASMalwS.2407A24
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Bulz.D23EB8
ZoneAlarmnot-a-virus:AdWare.Win32.Tpyn.hdr
GDataGen:Variant.Bulz.147128
McAfeeArtemis!149D37ECEC0E
MAXmalware (ai score=99)
VBA32AdWare.Tpyn
MalwarebytesMalware.AI.2426505716
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0WK121
YandexTrojan.GenAsa!JZ7QnqyCyl8
IkarusTrojan.Win32.TrojanClicker
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VB.OJQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Bulz.147128?

Bulz.147128 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment