Malware

How to remove “Bulz.330353”?

Malware Removal

The Bulz.330353 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.330353 virus can do?

  • Creates RWX memory
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.330353?


File Info:

crc32: 0753358F
md5: c94a447b75d9eeefdb4742fbbe9f1d58
name: C94A447B75D9EEEFDB4742FBBE9F1D58.mlw
sha1: c2878dc89be2120527a70f4935c44934092eac6e
sha256: b276b1944998c8b4b4b62428353d0c4118eb0c52f0ed6df6eed78e33afd25621
sha512: 0fb9d7166dd94df43759bec54425b13f35360e572dcfdc552a7b50bd15ac067de92dd4be9bfc18cfc1fda356fb21e9f5cd0c47628ea9981464cd203d1fe84e39
ssdeep: 192:QHN1QEf/7fUQ9Ayk4oniyBSaZW7FG3/rgSpGfRfid/gIW1YW9MCsET7dUI0:QZLUQpkxJoc/rj8fwd/I9MnPI
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Bulz.330353 also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.c94a447b75d9eeef
McAfeeArtemis!C94A447B75D9
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055eb341 )
BitDefenderGen:Variant.Bulz.330353
K7GWTrojan ( 0055eb341 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastMSIL:GenMalicious-BXX [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Banker.MSIL.ClipBanker.gen
AlibabaTrojanBanker:MSIL/ClipBanker.169eb91a
NANO-AntivirusTrojan.Win32.ClipBanker.ilqiis
ViRobotTrojan.Win32.Z.Clipbanker.14336.A
AegisLabTrojan.MSIL.ClipBanker.7!c
MicroWorld-eScanGen:Variant.Bulz.330353
RisingSpyware.ClipBanker!1.D058 (CLOUD)
Ad-AwareGen:Variant.Bulz.330353
EmsisoftGen:Variant.Bulz.330353 (B)
F-SecureTrojan.TR/Spy.ClipBanker.rddog
DrWebTrojan.ClipBankerNET.7
TrendMicroTrojanSpy.MSIL.CLIPBANKER.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
SophosMal/Generic-S
IkarusTrojan.MSIL.ClipBanker
JiangminTrojan.Generic.gtksp
eGambitUnsafe.AI_Score_99%
AviraTR/Spy.ClipBanker.rddog
MAXmalware (ai score=87)
MicrosoftTrojan:MSIL/ClipBanker.GG!MTB
ArcabitTrojan.Bulz.D50A71
ZoneAlarmHEUR:Trojan-Banker.MSIL.ClipBanker.gen
GDataMSIL.Trojan.ClipBanker.F
AhnLab-V3Trojan/Win32.RL_ADH.C4330404
BitDefenderThetaGen:NN.ZemsilF.34590.amW@auNQKbp
ALYacGen:Variant.Bulz.330353
MalwarebytesTrojan.ClipBanker
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/ClipBanker.MX
TrendMicro-HouseCallTrojanSpy.MSIL.CLIPBANKER.SM
TencentMsil.Trojan-banker.Clipbanker.Syhu
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/ClipBanker.MX!tr
AVGMSIL:GenMalicious-BXX [Trj]
Cybereasonmalicious.b75d9e
Paloaltogeneric.ml
Qihoo-360Win32/TrojanSpy.ClipBanker.HwMALNwA

How to remove Bulz.330353?

Bulz.330353 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment