Malware

Should I remove “Bulz.209816”?

Malware Removal

The Bulz.209816 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.209816 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.209816?


File Info:

crc32: 6D266F07
md5: 848f8769f2dfe4ad3dc5ccaa4bee45b8
name: 848F8769F2DFE4AD3DC5CCAA4BEE45B8.mlw
sha1: b1eb2bca6bb9550af5643a92d30012dcc2befe40
sha256: 3e35e1993bf8ad19de3cb3011babfa5bd3f80c323067f53ec9a41483d846ae6a
sha512: 178406ca6a400b6ea7dca06746eb0bdf6f89ef6496a19ec1e13b23dfd9f8dd99b1062adc59c370dd100dbba7f63fe4c85f3e95a73442114ef51c7120cefda8c6
ssdeep: 12288:okOb/S16azwfwKC2L8Z6MfoZfRH6n5auN+ZB+yiXnNjZq50HZwuVnOt8LF:xIq16a8fwKC2LvwoZ8YuN+ZB+FNjZq5
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 2020 Google LLC. All rights reserved.
Assembly Version: 1.0.0.0
InternalName: x63ax987e.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Chrome
ProductVersion: 1.0.0.0
FileDescription: Chrome
OriginalFilename: x63ax987e.exe

Bulz.209816 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.209816
FireEyeGeneric.mg.848f8769f2dfe4ad
ALYacGen:Variant.Bulz.209816
VIPRETrojan.Win32.Generic!BT
SangforMalware
BitDefenderGen:Variant.Bulz.209816
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
Ad-AwareGen:Variant.Bulz.209816
F-SecureTrojan.TR/AD.AgentTesla.zfkoe
DrWebTrojan.InjectNET.14
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Bulz.209816 (B)
IkarusTrojan.MSIL.Krypt
AviraTR/AD.AgentTesla.zfkoe
MicrosoftTrojan:Win32/AgentTesla!ml
ArcabitTrojan.Bulz.D33398
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
GDataGen:Variant.Bulz.209816
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.C4222774
McAfeePWS-FCSU!848F8769F2DF
MAXmalware (ai score=85)
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/GenKryptik.EVZG
RisingTrojan.GenKryptik!8.AA55 (TFE:C:RVzWksItaIO)
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Kryptik.WLD!tr
BitDefenderThetaGen:NN.ZemsilF.34634.Pm0@au9WdMc
AVGWin32:TrojanX-gen [Trj]
MaxSecureTrojan.Malware.300983.susgen

How to remove Bulz.209816?

Bulz.209816 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment