Malware

Bulz.301016 (B) removal guide

Malware Removal

The Bulz.301016 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.301016 (B) virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
shadeunit.club
strangerthingz.club

How to determine Bulz.301016 (B)?


File Info:

crc32: BEC0D10F
md5: 29dbd286a0ecefbc91e17b6c1cbbb524
name: 29DBD286A0ECEFBC91E17B6C1CBBB524.mlw
sha1: 0f2abc1de943c5d6459917bf115b838420bd39ed
sha256: f8c8441b4d26d23de6d0afe6aa8a4e71752a0b2cc1a5eb87180fa60945402d52
sha512: a8122385afd93efbbdf849dc5c79d19aba4e2dd8a390dee22ca25124b1fc4eafce6cccd5c4d092eff10b4e263715eca4f6d9dc05fe026b3ef845558224e3a341
ssdeep: 3072:SrV1c41Utsu7pKUy4wJs2Tt984EUXXGuIwMlw+Dcpvr7VS9sEsrv:So4UzliJ04lT0RcRVQn4v
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: veer iRoadProds 12 All rights reserved.
InternalName: bnon Content Installer 32
FileVersion: 5.17.21.39
CompanyName:
Comments: janx Install software 16
ProductName: plik NSIS 32 installer bonx
ProductVersion: 5.17.21.39
Translation: 0x0409 0x04b0

Bulz.301016 (B) also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.301016
FireEyeGeneric.mg.29dbd286a0ecefbc
ALYacGen:Variant.Bulz.301016
MalwarebytesGeneric.Trojan.Malicious.DDS
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan-Downloader ( 0051ae7b1 )
BitDefenderGen:Variant.Bulz.301016
K7GWTrojan-Downloader ( 0051ae7b1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Tovkater.P.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Tovkater.waa
NANO-AntivirusTrojan.Win32.Tovkater.eutihs
RisingDownloader.Tovkater!8.E5CE (CLOUD)
Ad-AwareGen:Variant.Bulz.301016
SophosMal/Generic-S
ComodoApplication.Win32.InstallMonster.DX@7e9j3l
F-SecureTrojan.TR/Tovkater.jaioq
DrWebTrojan.InstallMonster.2408
ZillyaDownloader.Tovkater.Win32.550
TrendMicroTROJ_GEN.R002C0GLM20
McAfee-GW-EditionBehavesLike.Win32.Downloader.cc
EmsisoftGen:Variant.Bulz.301016 (B)
IkarusTrojan-Downloader.Win32.Tovkater
AviraHEUR/AGEN.1117983
MAXmalware (ai score=93)
Antiy-AVLTrojan[Downloader]/Win32.Tovkater
Kingsoftwin32.unknown.virusname.(kcloud)
ArcabitTrojan.Bulz.D497D8
ZoneAlarmTrojan-Downloader.Win32.Tovkater.waa
GDataGen:Variant.Bulz.301016
AhnLab-V3Downloader/Win32.Tovkater.R350556
Acronissuspicious
McAfeeArtemis!29DBD286A0EC
VBA32TrojanDownloader.Tovkater
PandaTrj/Genetic.gen
ESET-NOD32multiple detections
TrendMicro-HouseCallTROJ_GEN.R002C0GLM20
TencentWin32.Trojan-downloader.Tovkater.Hugh
YandexTrojan.DL.Tovkater!4KwZb1YK8L8
SentinelOneStatic AI – Malicious PE – Downloader
eGambitUnsafe.AI_Score_99%
FortinetW32/Tovkater.GI!tr
BitDefenderThetaGen:NN.ZexaF.34804.iy0@a0wgTgci
AVGWin32:Malware-gen
Cybereasonmalicious.6a0ece
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Downloader.300

How to remove Bulz.301016 (B)?

Bulz.301016 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment