Malware

What is “Bulz.302274”?

Malware Removal

The Bulz.302274 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.302274 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.302274?


File Info:

crc32: 967AC695
md5: a2e3c0c01670119412c1beae95e37415
name: A2E3C0C01670119412C1BEAE95E37415.mlw
sha1: 913f416ad7fdb60faf9e40030fb33259457045d5
sha256: eec9f565329a6a6e4129c775a212eda9a3e23001dff996345538de0ea1f6bdfc
sha512: 1da28b8646f8e803aac167720b28c25fd6a677caecdcf152bd228541533faf05556e0385e403ace85de4458d36afd4ab6236612a7d47ae8064d13e8c56e88209
ssdeep: 6144:DoL3U0x7iUegkmo7re48FMaM3VTFroatgeESEhasDnHf6Vw:fa7iUenmkru6FlRoaXE9asLi6
type: PE32 executable (GUI) Intel 80386 system file, for MS Windows, UPX compressed

Version Info:

InternalName: triwilbifor.occ
FileVersion: 6.26.341
Copyright: Copyrighz (C) 2020, wodkafull
ProductVersion: 1.10.27
TranslationUsa: 0x0173 0x00dc

Bulz.302274 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.302274
FireEyeGeneric.mg.a2e3c0c016701194
CAT-QuickHealTrojan.Multi
McAfeeRDN/Generic PWS.y
CylanceUnsafe
ZillyaTrojan.Stealer.Win32.9845
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Bulz.302274
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ad7fdb
CyrenW32/Trojan.PBUD-2851
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:BotX-gen [Trj]
ClamAVWin.Packed.Predatorthief-9820523-0
KasperskyTrojan-Spy.Win32.Stealer.wfy
AlibabaTrojanSpy:Win32/Stealer.7ae476d6
ViRobotTrojan.Win32.Z.Bulz.352768
RisingRansom.ScarletFlash!8.1142F (TFE:5:IxrZyQ9FrYU)
Ad-AwareGen:Variant.Bulz.302274
EmsisoftGen:Variant.Bulz.302274 (B)
ComodoMalware@#24y8lzr2bapju
F-SecureTrojan.TR/Crypt.Agent.cqpcl
DrWebTrojan.PWS.Siggen2.61073
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.GLUPTEBA.THAAABA
McAfee-GW-EditionBehavesLike.Win32.RansomGandCrab.fc
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
JiangminTrojanSpy.Stealer.dnk
WebrootW32.Trojan.Agent.Gen
AviraTR/Crypt.Agent.cqpcl
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Kryptik
Kingsoftwin32.unknown.virusname.(kcloud)
MicrosoftTrojan:Win32/Azorult.MS!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Bulz.D49CC2
ZoneAlarmTrojan-Spy.Win32.Stealer.wfy
GDataGen:Variant.Bulz.302274
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R362748
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34780.vmKfa4p@IXgG
ALYacSpyware.Infostealer.RedLine
VBA32BScope.Trojan.Azorult
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HIRF
TrendMicro-HouseCallTrojan.Win32.GLUPTEBA.THAAABA
TencentWin32.Trojan-spy.Stealer.Lnnv
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_98%
FortinetW32/Kryptik.HIRY!tr
AVGWin32:BotX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/HEUR/QVM11.1.8840.Malware.Gen

How to remove Bulz.302274?

Bulz.302274 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment