Malware

Bulz.345441 (file analysis)

Malware Removal

The Bulz.345441 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.345441 virus can do?

  • Executable code extraction
  • Creates RWX memory

Related domains:

z.whorecord.xyz
a.tomx.xyz
tools.feron.it

How to determine Bulz.345441?


File Info:

crc32: F02ED50C
md5: ec00b9f1654e5009c86d30bf6fbaaf50
name: EC00B9F1654E5009C86D30BF6FBAAF50.mlw
sha1: 66e790aa8b69f47e7a85db5ac88f636ad574bbd5
sha256: c877c387d1faa4fc1235007842106b4b42e9968da80acc1cea19e61f32664996
sha512: c4211c253150bbaf4e8e20fb733b5a61570b1ae17e3b90ccdcee8865be55937f1d11ff505307b09aa767eb3f71306099ae3cd2d57f175628dfca0aceb09a71b5
ssdeep: 768:gQt21N+V1MKziPX7Dc8X8BO+AjEXy/vozd7d5DN4pssTYYwoEXy/vozdyvtYcF0:gD1NIMK+3c8J+QIxOssTYLEIAX0Kcl
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.1.7.0
InternalName: banPTZc1.dll.exe
FileVersion: 0.1.7.0
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 0.1.7.0
FileDescription: banPTZc1.dll
OriginalFilename: banPTZc1.dll.exe

Bulz.345441 also known as:

LionicHacktool.Win32.FakeRansom.3!c
DrWebTrojan.Encoder.6247
ALYacGen:Variant.Bulz.345441
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.7133
SangforRansom.Win32.Hoax.em
AlibabaRiskWare:Win32/FakeRansom.b4600057
SymantecRansom.Cryptolocker
ESET-NOD32MSIL/Filecoder.LY
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Hoax.Win32.Generic
BitDefenderGen:Variant.Bulz.345441
NANO-AntivirusTrojan.Win32.Encoder.emabld
MicroWorld-eScanGen:Variant.Bulz.345441
TencentWin32.Trojan-psw.Fakeransom.Ajuu
Ad-AwareGen:Variant.Bulz.345441
BitDefenderThetaGen:NN.ZemsilF.34088.Jm0@ayF6vNn
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_NULLBYTE.A
McAfee-GW-EditionGeneric.bgw
FireEyeGen:Variant.Bulz.345441
EmsisoftGen:Variant.Bulz.345441 (B)
JiangminHoax.FakeRansom.o
WebrootTrojan.Ransom.Gen
eGambitUnsafe.AI_Score_86%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Dynamer!ac
ArcabitTrojan.Bulz.D54561
GDataMSIL.Trojan-Ransom.Nullbyte.A
McAfeeGeneric.bgw
MAXmalware (ai score=100)
VBA32Trojan.Encoder
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_NULLBYTE.A
IkarusTrojan-Ransom.NullByte
MaxSecureTrojan.Malware.300983.susgen
FortinetRansom.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwMABLsA

How to remove Bulz.345441?

Bulz.345441 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment