Malware

Bulz.248790 removal guide

Malware Removal

The Bulz.248790 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.248790 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Bulz.248790?


File Info:

crc32: 3281E01D
md5: 66de83138429e1b196bf702f90a10027
name: 66DE83138429E1B196BF702F90A10027.mlw
sha1: ba40a3ac0da284c2706e1902718bb5049b8b6d2e
sha256: 74184eb76181b65c83b51532a525412361e32a5e2adba60db7319ac37f706ef8
sha512: 4067980709396ade7a8a0fcd64048a42ec36a9a06c8280b9651cf2f13fb829a84eaff21be811da2f6db2bbf758eedb6ed2f8401124c3237b27860b6dd277fc57
ssdeep: 12288:rpKIFDNS0iIz5vdNBp7rmNmvUMkcHuT26aj:dKi7JzBBFrmwkcH623j
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 1984-2016 Adobe Systems Incorporated
Assembly Version: 15.9.2205.29857
InternalName: Adobe Updater.exe
FileVersion: 15.9.2205.29857
CompanyName:
LegalTrademarks:
Comments:
ProductName: Adobe Updater
ProductVersion: 15.9.2205.29857
FileDescription: Adobe Updater
OriginalFilename: Adobe Updater.exe

Bulz.248790 also known as:

K7AntiVirusTrojan ( 004bc22a1 )
ALYacGen:Variant.Bulz.248790
CylanceUnsafe
ZillyaTrojan.Scar.Win32.97411
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojanSpy:Win32/ClipBanker.34ed6f87
K7GWTrojan ( 004bc22a1 )
Cybereasonmalicious.38429e
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Scar.mwno
BitDefenderGen:Variant.Bulz.248790
NANO-AntivirusTrojan.Win32.Scar.easiny
TencentWin32.Trojan.Scar.Wqxi
Ad-AwareGen:Variant.Bulz.248790
SophosMal/Generic-S
ComodoMalware@#kicykpq9lhgm
DrWebTrojan.MulDrop6.24940
VIPRETrojan.Win32.Generic!BT
TrendMicroTSPY_COINSTEAL.SM2
FireEyeGeneric.mg.66de83138429e1b1
EmsisoftGen:Variant.Bulz.248790 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Scar.idf
WebrootW32.Trojan.GenKD
ArcabitTrojan.Bulz.D3CBD6
ZoneAlarmTrojan.Win32.Scar.mwno
AhnLab-V3Trojan/Win32.Scar.C1581253
McAfeeGeneric.asj
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/GdSda.A
TrendMicro-HouseCallTSPY_COINSTEAL.SM2
RisingSpyware.ClipBanker!1.B627 (CLASSIC)
YandexTrojan.Scar!A11Ud59q9Dc
IkarusTrojan.MSIL.PSW
eGambitUnsafe.AI_Score_100%
FortinetMSIL/CoinStealer.W!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Scar.HwMAjacA

How to remove Bulz.248790?

Bulz.248790 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment