Malware

How to remove “Bulz.374446”?

Malware Removal

The Bulz.374446 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.374446 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Network activity detected but not expressed in API logs

How to determine Bulz.374446?


File Info:

crc32: A4FB291F
md5: f59202c1fedebafba92a71005455681f
name: F59202C1FEDEBAFBA92A71005455681F.mlw
sha1: b710948fe7ca1b5e8b124f920ef94c8455da8c8e
sha256: 174c1446f8c78bea978ed81fc126a16aba8b265dfa5c350e6fee19dc2a8dbbee
sha512: 3812939bfe9758cb5f265dcdda5d32263886b4cbc8074e450bbf2cfda9a05296085ef885fd7a9666bff9b30837fbd6374141bf48f4bbb67705151ffdbefa3377
ssdeep: 12288:LIW18S7IGoG8rYtsIn19yV0xw+EOPf7eBlFg1dnoww:LD1lwG8rUn1k2xTF6lFsow
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: xa9 Zoom Video Communications, Inc. All rights reserved.
InternalName: Zoom
FileVersion: 5,4,58891,1115
CompanyName: Zoom Video Communications, Inc.
LegalTrademarks: Zoom
Comments:
ProductName: Zoom
ProductVersion: 5,4,58891,1115
FileDescription:
OriginalFilename: Zoom
Translation: 0x0409 0x04b0

Bulz.374446 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.374446
FireEyeGeneric.mg.f59202c1fedebafb
McAfeeArtemis!F59202C1FEDE
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00563cb01 )
BitDefenderGen:Variant.Bulz.374446
K7GWTrojan ( 00563cb01 )
Cybereasonmalicious.fe7ca1
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Vasal.gen
Ad-AwareGen:Variant.Bulz.374446
EmsisoftGen:Variant.Bulz.374446 (B)
F-SecureTrojan.TR/Spy.Agent.iqweh
DrWebTrojan.PWS.Steam.18750
TrendMicroTROJ_GEN.R014C0RBS21
McAfee-GW-EditionBehavesLike.Win32.BadFile.hc
SophosML/PE-A + Mal/VMProtBad-A
IkarusTrojan-Spy.Agent
AviraTR/Spy.Agent.iqweh
MicrosoftTrojan:Win32/Wacatac.D1!ml
ArcabitTrojan.Bulz.D5B6AE
ZoneAlarmHEUR:Trojan.MSIL.Vasal.gen
GDataWin32.Backdoor.DCRAT.VV0PAF
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.RL_Reputation.R367820
BitDefenderThetaGen:NN.ZemsilF.34590.Ly0@aCqKSmai
ALYacGen:Variant.Bulz.374446
MAXmalware (ai score=86)
MalwarebytesSpyware.Agent
ESET-NOD32a variant of MSIL/Spy.Agent.CVT
TrendMicro-HouseCallTROJ_GEN.R014C0RBS21
SentinelOneStatic AI – Malicious PE
FortinetW32/Vasal.A!tr
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Backdoor.Rat.HgIASPsA

How to remove Bulz.374446?

Bulz.374446 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment