Malware

Bulz.16470 malicious file

Malware Removal

The Bulz.16470 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.16470 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to modify desktop wallpaper
  • Exhibits behavior characteristic of Cerber ransomware
  • Attempts to execute a binary from a dead or sinkholed URL
  • Writes a potential ransom message to disk
  • Attempts to modify proxy settings
  • Attempts to access Bitcoin/ALTCoin wallets
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities

How to determine Bulz.16470?


File Info:

crc32: 36069893
md5: ae8e5bd09fdff09b47bb4df4567d6d84
name: AE8E5BD09FDFF09B47BB4DF4567D6D84.mlw
sha1: 1137cd06f1b5f98eb7ccc0b3abefd61837f4b8f5
sha256: 6ae0dc947078b808a0424a49332df0c0aa3f5ec1bf840501d5056fcfec5790fe
sha512: 55b44b53fc900cdf3b3b19e757386ab46438eb6eade84cb73500ed928a830592b5d5616a9068e0209457ac6a8c5c9a0a11c1b962c3d0d7e411682b77ebe98d39
ssdeep: 6144:NhMrlhlzZKeej7dUjXhgFna/g1awe1sF10r6KeV:TMrrlo76jRgFnKgQZm10
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Bulz.16470 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0050e88a1 )
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.16470
CAT-QuickHealRansom.Exxroute.A3
ALYacGen:Variant.Bulz.16470
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.2607580
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 0050e88a1 )
Cybereasonmalicious.09fdff
BitDefenderThetaGen:NN.ZexaF.34670.mmW@aiYpKLni
SymantecRansom.Cerber
ESET-NOD32a variant of Win32/Kryptik.FSQL
APEXMalicious
AvastWin32:GenMalicious-NVZ [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Bulz.16470
NANO-AntivirusTrojan.Win32.Vundo.eqifph
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Bulz.16470
SophosMal/Generic-S + Mal/Zbot-EU
ComodoTrojWare.Win32.Troldesh.C@73zvhv
DrWebTrojan.Encoder.4691
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.ae8e5bd09fdff09b
EmsisoftGen:Variant.Bulz.16470 (B)
JiangminTrojan.Zerber.cfc
AviraTR/Vundo.Gen
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftRansom:Win32/Cerber.K
GDataGen:Variant.Bulz.16470
Acronissuspicious
McAfeeArtemis!AE8E5BD09FDF
MAXmalware (ai score=83)
VBA32BScope.Trojan-Ransom.Zerber
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPCERBER.SMONT4
RisingRansom.Cerber!8.3058 (CLOUD)
YandexTrojan.GenAsa!5198G1Vzw1o
SentinelOneStatic AI – Suspicious PE
FortinetRansomware.FMEU!tr
AVGWin32:GenMalicious-NVZ [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Buterat.HxIB6XsA

How to remove Bulz.16470?

Bulz.16470 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment