Malware

Bulz.347723 malicious file

Malware Removal

The Bulz.347723 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.347723 virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Bulz.347723?


File Info:

name: 23A3F8ADFAB92A07CB0A.mlw
path: /opt/CAPEv2/storage/binaries/8c5e32d052252cce3313ed744af09cfe73190fc24227431270f2c269bebc712c
crc32: DC459D77
md5: 23a3f8adfab92a07cb0acc746becbc0b
sha1: 5fc9364683b640ad8fc2f8d377e7e9d6c9ee8440
sha256: 8c5e32d052252cce3313ed744af09cfe73190fc24227431270f2c269bebc712c
sha512: c42e375b636cbc4263a0cab2fe118d51fd62de41d8ae03cfa693fed0adfc78f4599c94b39de14c7ab93cfa34e677b77d817d20f9161cc2ff96f6bf897f6978b4
ssdeep: 1536:Xxy9nViGscll1sQzCokHKUjQERj/yHkrb8jQxzZb9nvLw3QSAhwAjAC6s5INK5YJ:l0lhCo5HD4ZASfJ6nL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T139340ED0C984E460FEDE9B78117BACFA865F7E65AAB9A64CC82C70E153731C35839053
sha3_384: 7bf830a0c6c83d7849232622983241213dbfebe884cb2ec7a7d214f948c125b1d58ceb210fd049b6e701706eca0467d5
ep_bytes: ff250020400000000000000000000000
timestamp: 2104-07-11 22:59:35

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: VPN.Installer
FileVersion: 1.0.0.0
InternalName: VPN.Installer.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: VPN.Installer.exe
ProductName: VPN.Installer
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.347723 also known as:

FireEyeGen:Variant.Bulz.347723
ALYacGen:Variant.Bulz.347723
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.GenCBL.XO
K7AntiVirusTrojan ( 005778a21 )
AlibabaTrojan:Win32/GenCBL.b9c4a214
K7GWTrojan ( 005778a21 )
Cybereasonmalicious.dfab92
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenCBL.XO
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
BitDefenderGen:Variant.Bulz.347723
NANO-AntivirusTrojan.Win32.RedLine.iuihsu
MicroWorld-eScanGen:Variant.Bulz.347723
AvastWin32:DangerousSig [Trj]
Ad-AwareGen:Variant.Bulz.347723
EmsisoftMalCert.A (A)
F-SecureHeuristic.HEUR/AGEN.1232030
DrWebTrojan.PWS.RedLine.26
ZillyaTrojan.GenCBL.Win32.1121
McAfee-GW-EditionGenericRXOK-RP!23A3F8ADFAB9
SophosMal/Generic-S
IkarusTrojan.Win32.Generic
GDataGen:Variant.Bulz.347723
AviraHEUR/AGEN.1232030
ArcabitTrojan.Bulz.D54E4B
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.C4512340
McAfeeGenericRXOK-RP!23A3F8ADFAB9
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.MalCert!1.D26F (CLASSIC)
MaxSecureTrojan.Malware.115655532.susgen
FortinetW32/GenCBL.XO!tr
AVGWin32:DangerousSig [Trj]

How to remove Bulz.347723?

Bulz.347723 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment