Malware

What is “Bulz.391140 (B)”?

Malware Removal

The Bulz.391140 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.391140 (B) virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Bulz.391140 (B)?


File Info:

crc32: C9E0CEFB
md5: 89510d803f2553d1719f760400aeb5e0
name: 89510D803F2553D1719F760400AEB5E0.mlw
sha1: 4372539c6913e24895e188fc566b1220ff7f6ffc
sha256: 25c33da6cf616b4fd5da2fd149b64e1fbcc05a97ae92f0ed90bee7796796e7f4
sha512: 28283f52b053a0d4b3522c7b6b012440e23d7f2e277aa430968e0becac8b9e13c53c3a4973834fb46727aa2d1a3000c2bd00482bb53586168593fda58f682d0b
ssdeep: 384:HDY2LHZF9ozSfQh4A0/Yrr1t2R1MA1bHDL4hXnQWh75Y2LHZ:H0IHVozSfQezyXB76IH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Runtime Explorer
FileVersion: 1.00
CompanyName: Microsoft Windows
ProductName: Runtime Explorer
ProductVersion: 1.00
OriginalFilename: Runtime Explorer.exe

Bulz.391140 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.391140
CylanceUnsafe
Cybereasonmalicious.03f255
ESET-NOD32a variant of Win32/ClipBanker.MA
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Keylogger.Clipbanker-9849694-0
KasperskyTrojan-Banker.Win32.ClipBanker.pxe
BitDefenderGen:Variant.Bulz.391140
MicroWorld-eScanGen:Variant.Bulz.391140
Ad-AwareGen:Variant.Bulz.391140
BitDefenderThetaGen:NN.ZevbaF.34758.hm0@aqp!Npki
FireEyeGeneric.mg.89510d803f2553d1
EmsisoftGen:Variant.Bulz.391140 (B)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Bulz.D5F7E4
ZoneAlarmTrojan-Banker.Win32.ClipBanker.pxe
GDataGen:Variant.Bulz.391140
AhnLab-V3Trojan/Win.ClipBanker.R416431
MAXmalware (ai score=87)
MalwarebytesTrojan.Banker
PandaTrj/GdSda.A
AVGWin32:Trojan-gen

How to remove Bulz.391140 (B)?

Bulz.391140 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment