Malware

Bulz.250136 information

Malware Removal

The Bulz.250136 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.250136 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Bulz.250136?


File Info:

crc32: 1FFD0F58
md5: 9e080e3520ac487d2149381fd9757d03
name: 9E080E3520AC487D2149381FD9757D03.mlw
sha1: 060bfb89ead4e514d055daf1c766d1f39d4a7268
sha256: b4c054552d0f43cc104795ddcb504cd3dbe8fe92a01d5e03dcb7363010bf31ba
sha512: 4df2308c9509363a4637072f490337ee1dbd73649c49583653728500cdbd8071f313af71f7bfd0ea8fa3c41b3baf0543d8121a06b58df58c500cdf4c5c2b28d7
ssdeep: 12288:SgjL3jxQJUYS/+xz8pcdfJYb7nXqej7uytsOURF51wEp8CcVhKUtn50GF4Iz/OU:rvxQmYSpckPkST0sDdxKkeF
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 2017 - 2020 McDonald's. All Rights Reserved
Assembly Version: 6.4.0.1
InternalName: ScopeTree.exe
FileVersion: 6.4.0.1
CompanyName: McDonolds
LegalTrademarks:
Comments:
ProductName: McDonolds POS
ProductVersion: 6.4.0.1
FileDescription: McDonolds POS
OriginalFilename: ScopeTree.exe

Bulz.250136 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.250136
FireEyeGeneric.mg.9e080e3520ac487d
Qihoo-360Generic/Backdoor.9cf
ALYacGen:Variant.Bulz.250136
CylanceUnsafe
SangforMalware
BitDefenderGen:Variant.Bulz.250136
CyrenW32/MSIL_Kryptik.CIP.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.Androm.gen
AegisLabTrojan.Multi.Generic.4!c
Ad-AwareGen:Variant.Bulz.250136
EmsisoftGen:Variant.Bulz.250136 (B)
F-SecureHeuristic.HEUR/AGEN.1138648
DrWebTrojan.Packed2.42726
TrendMicroBackdoor.MSIL.ANDROM.THLOEBO
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SophosMal/Generic-S
IkarusWin32.SuspectCrc
AviraHEUR/AGEN.1138648
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AAB4
ArcabitTrojan.Bulz.D3D118
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataMSIL.Trojan-Stealer.AgentTesla.YABALF
CynetMalicious (score: 100)
McAfeePWS-FCTY!9E080E3520AC
MalwarebytesSpyware.AgentTesla
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/GenKryptik.EXWX
TrendMicro-HouseCallBackdoor.MSIL.ANDROM.THLOEBO
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Kryptik.YXC!tr
BitDefenderThetaGen:NN.ZemsilF.34670.kn0@am7ShXm
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.9ead4e
Paloaltogeneric.ml

How to remove Bulz.250136?

Bulz.250136 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment