Malware

What is “Bulz.308380”?

Malware Removal

The Bulz.308380 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.308380 virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Bulz.308380?


File Info:

name: E26A4B441FAED1759555.mlw
path: /opt/CAPEv2/storage/binaries/1aececfc23034d6cba7e148368f57337e806dcacc4630b028359b46b52c47901
crc32: F2199285
md5: e26a4b441faed1759555d506d85203bd
sha1: 74e9e0fbac19480f340f7fa203b6fe5dfb449cc4
sha256: 1aececfc23034d6cba7e148368f57337e806dcacc4630b028359b46b52c47901
sha512: b21cedac18949ab2ba33dcffb635a3c603543cfde70fa22d77fcc0224cb056ddd8f40d731b59f61678ad8e804500dee75c49edcb96b06366eff807a709a0d19f
ssdeep: 49152:NnfTzVw3xM5Bq5nyVkVtrxMYSrqT7ZTpFzmd+:tMxM5BqPtrx79U+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18D956B02A691043BD1B6093D4BAB1A8519687E2429F48E1E2EF57FCF5F3DF80AD23553
sha3_384: 8a984fca215edf5847f1aa779eafc786ddb46eb2c511905d4dac66acf37c0174bfa678c20889d5dc2572876d1bed7dda
ep_bytes: 558bec83c4f053b8b82c5200e8ab39ee
timestamp: 2014-04-09 11:03:00

Version Info:

0: [No Data]

Bulz.308380 also known as:

MicroWorld-eScanGen:Variant.Bulz.308380
FireEyeGen:Variant.Bulz.308380
McAfeeArtemis!E26A4B441FAE
VIPREGen:Variant.Bulz.308380
K7AntiVirusTrojan ( 7000000f1 )
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.41faed
VirITTrojan.Win32.SMSSend.HGT
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32Win32/Hoax.ArchSMS.AGF
APEXMalicious
KasperskyHEUR:Trojan-Downloader.Win32.Agent.gen
BitDefenderGen:Variant.Bulz.308380
NANO-AntivirusTrojan.Win32.SMSSend.cwzgzq
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Bulz.308380
EmsisoftGen:Variant.Bulz.308380 (B)
DrWebTrojan.SMSSend.4907
ZillyaTrojan.ArchSMS.Win32.29506
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
SophosMal/Generic-S
AviraHEUR/AGEN.1214780
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.113
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Bulz.308380
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.308380
VBA32BScope.Adware.Puamson
MalwarebytesFileTour.Adware.Bundler.DDS
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen

How to remove Bulz.308380?

Bulz.308380 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment