Malware

Bulz.164560 removal

Malware Removal

The Bulz.164560 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.164560 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.164560?


File Info:

crc32: F64AD54F
md5: 6a20ad132332c021511513fa1e3c18bd
name: 6A20AD132332C021511513FA1E3C18BD.mlw
sha1: fbec132615d831104d5016fd40d4958c15c955cf
sha256: 91420ce52d06a48496cdd4d64fd2228ecde0db46df14cb11ea60a56f43bcdd26
sha512: c57a2ac160a95cc8b25e8522355f5f2ec49546ef1233e662e88a88f89e060e902df267944f22b95e478563b69d1e6c8032573ccb7aa69ff8a5b0cae1dbdcd469
ssdeep: 384:k71T+Rh/1xoBDEqLc5qV5Q8btKsr0034cLpUoBw:k7sxrolbcqXbwsR3FWo6
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: N-W0rm.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: N-W0rm.exe

Bulz.164560 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.164560
McAfeeRDN/Generic BackDoor
CylanceUnsafe
AegisLabTrojan.MSIL.Agent.4!c
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderGen:Variant.Bulz.164560
K7GWTrojan ( 0055bea61 )
K7AntiVirusTrojan ( 005309d11 )
ArcabitTrojan.Bulz.D282D0
CyrenW32/MSIL_Kryptik.SC.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Razy-9753197-0
KasperskyHEUR:Trojan.MSIL.Agent.gen
TencentMsil.Trojan.Agent.Wofw
Ad-AwareGen:Variant.Bulz.164560
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.faieu@0
F-SecureHeuristic.HEUR/AGEN.1121251
DrWebBackDoor.Siggen2.2981
ZillyaTrojan.Agent.Win32.1157290
TrendMicroTrojan.MSIL.KILLREVRUN.SMJM09
McAfee-GW-EditionArtemis!Trojan
MaxSecureTrojan.Malware.300983.susgen
FireEyeGeneric.mg.6a20ad132332c021
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1121251
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Dynamer
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftWorm:MSIL/NWorm.GA!MTB
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GDataGen:Variant.Bulz.164560
CynetMalicious (score: 100)
AhnLab-V3Trojan/Gen.RL_Generic.C3503601
VBA32TScope.Trojan.MSIL
ALYacGen:Variant.Bulz.164560
MalwarebytesTrojan.NWorm
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.CBW
TrendMicro-HouseCallTrojan.MSIL.KILLREVRUN.SMJM09
RisingBackdoor.Bot!1.BEA9 (CLASSIC)
IkarusWin32.Outbreak
eGambitUnsafe.AI_Score_98%
FortinetMSIL/Agent.CGA!tr
BitDefenderThetaGen:NN.ZemsilF.34700.bm0@aiuc0Sg
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.32332c
AvastWin32:DropperX-gen [Drp]
Qihoo-360Generic/Trojan.289

How to remove Bulz.164560?

Bulz.164560 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment