Malware

Should I remove “Bulz.318384”?

Malware Removal

The Bulz.318384 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.318384 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Bulz.318384?


File Info:

name: 0145091DDCB015EC4269.mlw
path: /opt/CAPEv2/storage/binaries/494106f582b7176b82ed6216ea15a3ee53ac3bbeabc761b4c9e0f6963935e5e8
crc32: ACF29B22
md5: 0145091ddcb015ec4269f3e4615f11af
sha1: 41fde26270fc5853d4ffb8d5ca91dd19b444dd11
sha256: 494106f582b7176b82ed6216ea15a3ee53ac3bbeabc761b4c9e0f6963935e5e8
sha512: 6152e1b9434fb88e1487fbef4b9489dd4ef5de70b11c9b59961c3f7d8595e3529b75887bb3e658767e0cfe365172165444f07df7fadc09cd6e12ac436ed70dfb
ssdeep: 196608:dKB1rHBKPteP9jMw0sK1t4Iw0spteP9j3191:oZoPtu9ow0sKPw0sptu9jj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D75612322358CE0EF16E237480758C134AE2E15AA37E518A7ECD5B18875AF75BF01B97
sha3_384: 21a4d8ab3f231d6fc8814dd2b91046fee7a32f8a4d36e534e328cbd6863fbab7a1ac3421f064b47b574e9f6a4e82ebc1
ep_bytes: ff25002040008716993e8716993e8716
timestamp: 2101-08-29 04:52:38

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Call of Duty 5 World at War Trainer [CYBERS-TEAM]
FileVersion: 1.0.0.0
InternalName: Call of Duty 5 World at War Trainer [CYBERS-TEAM].exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Call of Duty 5 World at War Trainer [CYBERS-TEAM].exe
ProductName: Call of Duty 5 World at War Trainer [CYBERS-TEAM]
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.318384 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.318384
FireEyeGeneric.mg.0145091ddcb015ec
McAfeeArtemis!0145091DDCB0
AlibabaRiskWare:MSIL/HacktoolX.a4d11d4b
K7GWRiskware ( 00570b731 )
Cybereasonmalicious.ddcb01
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Riskware.GameHack.CS
TrendMicro-HouseCallTROJ_GEN.R002H09KQ21
BitDefenderGen:Variant.Bulz.318384
AvastWin32:AdwareX-gen [Adw]
Ad-AwareGen:Variant.Bulz.318384
EmsisoftGen:Variant.Bulz.318384 (B)
McAfee-GW-EditionArtemis!Trojan
SophosMal/MSIL-AZ
GDataGen:Variant.Bulz.318384
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C4535701
ALYacGen:Variant.Bulz.318384
APEXMalicious
YandexRiskware.GameHack!AdwHvuU8q40
FortinetRiskware/GameHack
AVGWin32:AdwareX-gen [Adw]
MaxSecureTrojan.Malware.300983.susgen

How to remove Bulz.318384?

Bulz.318384 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment