Malware

Bulz.211754 removal guide

Malware Removal

The Bulz.211754 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.211754 virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.211754?


File Info:

crc32: 545DF05C
md5: 962d39a1a6ac6c508a67f7ba2db92599
name: 962D39A1A6AC6C508A67F7BA2DB92599.mlw
sha1: 5586bd9affa626475983b63d7cf58ca90937cd19
sha256: 39d1a84673507cd58cca96063ecc5dc5064812a212497f192fb6cb84bca6a331
sha512: 7962cf839cc3edaaefb8b67f9c3bbea6159c030682d78b4dbff4de9fb35b9e4013880b842fd96580949bf4100b8c2ac86962e3acbd5359a44b32a5a263c9ed9a
ssdeep: 24576:XLhUzHmzN6hnWxnuFPT/o3NecSowQab+DWFV8/r6Gsm17qimH6cRayep:XLrAInuFPT/VcSovqcWs/Rz17ixRayep
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName: Drive SnapShot Portable
PortableApps.comAppID: SnapShotPortable
FileVersion: 1.48.0.18904
PortableApps.comFormatVersion: 2020.07.09
CompanyName: http://forum.portableappc.com/index.php
LegalTrademarks:
Comments: $INSTALLERCOMMENTS
ProductName: Drive SnapShot Portable
PortableApps.comInstallerVersion: 2020.07.09.0
ProductVersion: 1.48.0.18904
FileDescription: Drive SnapShot Portable
OriginalFilename: SnapShotPortable_1.48.0.18904_x86-1.48.0.18905_x64_English.paf.exe
Translation: 0x0409 0x04b0

Bulz.211754 also known as:

BkavW32.AIDetect.malware2
ALYacGen:Variant.Bulz.211754
SangforTrojan.Win32.Wacatac.B
BitDefenderGen:Variant.Bulz.211754
Cybereasonmalicious.1a6ac6
MicroWorld-eScanGen:Variant.Bulz.211754
Ad-AwareGen:Variant.Bulz.211754
McAfee-GW-EditionBehavesLike.Win32.AdwareKuaiba.tc
FireEyeGen:Variant.Bulz.211754
EmsisoftGen:Variant.Bulz.211754 (B)
MicrosoftRansom:Win32/Rector
AegisLabTrojan.Win32.Bulz.4!c
GDataGen:Variant.Bulz.211754
McAfeeArtemis!962D39A1A6AC
MAXmalware (ai score=87)
TrendMicro-HouseCallTROJ_GEN.R002H09F221
IkarusTrojan.HTML.Redirector
Paloaltogeneric.ml

How to remove Bulz.211754?

Bulz.211754 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment