Malware

Bulz.341844 removal

Malware Removal

The Bulz.341844 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.341844 virus can do?

  • Executable code extraction
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Bulz.341844?


File Info:

crc32: E638CE79
md5: ae8c24bdc6168d229998e0dfaf099dc2
name: AE8C24BDC6168D229998E0DFAF099DC2.mlw
sha1: 89852f5ebc6c9460539236cccfaf3b32fc1b5359
sha256: 2e4ac9581d6c2239da46224a47f0df7bed29d41301d15af9cddfc3111e0e79f5
sha512: 26904b2d46236fd3b4cce4468c60187dbb218323c55276afc33a92d803afe22deae3517690ff324688ad5a036feda5878ac1ba1b66a32dc6142e8d9af1870d4f
ssdeep: 1536:tm9aJfXgY1zUTyr5hVyeHCMIdzdsr52XVdr5hFfXgY1zUTy4aa:s+XgTTSjk6CMI490pjpXgTT5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0804 0x04b0
InternalName: Superrecoveryx8865x4e01
FileVersion: 1.00
CompanyName: AdobeReaderx5728x7ebfx5347x7ea7
ProductName: x5de5x7a0b1
ProductVersion: 1.00
OriginalFilename: Superrecoveryx8865x4e01.exe

Bulz.341844 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusP2PWorm ( 004c7aaa1 )
LionicTrojan.Win32.Cosmu.lcFO
Elasticmalicious (high confidence)
DrWebTrojan.Click3.5457
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.341844
CylanceUnsafe
AlibabaRansom:Win32/Crypmod.6ed4cc28
K7GWP2PWorm ( 004c7aaa1 )
Cybereasonmalicious.dc6168
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/VB.QYI
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Genericr-7646425-0
KasperskyTrojan-Ransom.Win32.Crypmod.yca
BitDefenderGen:Variant.Bulz.341844
NANO-AntivirusTrojan.Win32.Crypmod.fkhzat
MicroWorld-eScanGen:Variant.Bulz.341844
TencentMalware.Win32.Gencirc.10bb1c85
Ad-AwareGen:Variant.Bulz.341844
SophosMal/Generic-S
ComodoMalware@#1dn7m9u22e1dg
BitDefenderThetaGen:NN.ZevbaF.34170.Mm0@aiwW5Xob
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDB-HG!AE8C24BDC616
FireEyeGeneric.mg.ae8c24bdc6168d22
EmsisoftGen:Variant.Bulz.341844 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Crypmod.fv
WebrootW32.Heuristic.Dkv
AviraTR/Crypt.FKM.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2790922
KingsoftWin32.Troj.Generic.v.(kcloud)
MicrosoftTrojan:Win32/Occamy.C2E
GDataGen:Variant.Bulz.341844
McAfeeGenericRXDB-HG!AE8C24BDC616
MAXmalware (ai score=100)
PandaGeneric Malware
IkarusTrojan.Win32.VB
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Bulz.341844?

Bulz.341844 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment