Malware

How to remove “Bulz.398488”?

Malware Removal

The Bulz.398488 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.398488 virus can do?

    How to determine Bulz.398488?

    
    

    File Info:

    crc32: A654F5CB
    md5: 442df949bc6561667075a3be714f2ee2
    name: 442DF949BC6561667075A3BE714F2EE2.mlw
    sha1: 7439b26069d70e39ae2d7ef1b5b82c0e4ec163f2
    sha256: d25ecbcb79ba2a82b551976de73da29fdd407334264ae4b55b58baad6cecd72b
    sha512: fa7b9eabd70a2ca27e51557f317aee6752e699613a69d4ae75e25410f9f7df3ae1cb5c2f4734b1d3dea4d857ed1e5450f29e5f227028399ef5abd1257d4815e4
    ssdeep: 24576:LxK/L4U7IrLBms4o2S3ge8ZuuTCxrblAWh:e7IrLBmQ2SQsuTCFxAWh
    type: PE32 executable (GUI) Intel 80386, for MS Windows

    Version Info:

    LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
    InternalName: taskhost.exe
    FileVersion: 10.0.17763.831 (WinBuild.160101.0800)
    CompanyName: Microsoft Corporation
    ProductName: Microsoftxae Windowsxae Operating System
    ProductVersion: 10.0.17763.831
    FileDescription: Host Process for Windows Tasks
    OriginalFilename: taskhost.exe
    Translation: 0x0409 0x04b0

    Bulz.398488 also known as:

    K7AntiVirusTrojan ( 00577dec1 )
    Elasticmalicious (high confidence)
    DrWebTrojan.MulDrop17.51325
    CynetMalicious (score: 100)
    ALYacGen:Variant.Bulz.398488
    CylanceUnsafe
    ZillyaTrojan.Filecoder.Win32.19471
    SangforTrojan.Win32.Save.a
    CrowdStrikewin/malicious_confidence_90% (D)
    K7GWTrojan ( 00577dec1 )
    Cybereasonmalicious.9bc656
    SymantecML.Attribute.HighConfidence
    ESET-NOD32Win32/Filecoder.Avaddon.D
    APEXMalicious
    AvastWin32:Trojan-gen
    KasperskyHEUR:Trojan-Ransom.Win32.Generic
    BitDefenderGen:Variant.Bulz.398488
    MicroWorld-eScanGen:Variant.Bulz.398488
    TencentMalware.Win32.Gencirc.11c10e72
    Ad-AwareGen:Variant.Bulz.398488
    SophosTroj/Avaddon-A
    BitDefenderThetaGen:NN.ZexaF.34050.Yu0@a8Z9Dgki
    TrendMicroRansom.Win32.AVADDON.SMTHA
    McAfee-GW-EditionBehavesLike.Win32.Generic.cm
    FireEyeGeneric.mg.442df949bc656166
    EmsisoftGen:Variant.Bulz.398488 (B)
    JiangminTrojan.DelShad.bok
    AviraHEUR/AGEN.1138883
    eGambitUnsafe.AI_Score_100%
    Antiy-AVLTrojan/Generic.ASMalwS.335EE48
    MicrosoftRansom:Win32/Avaddon.MK!MTB
    ArcabitTrojan.Bulz.D61498
    ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
    GDataGen:Variant.Bulz.398488
    AhnLab-V3Malware/Win.Ransom.R422799
    McAfeeGenericRXOX-FG!442DF949BC65
    MAXmalware (ai score=85)
    MalwarebytesRansom.Avaddon
    PandaTrj/GdSda.A
    TrendMicro-HouseCallRansom.Win32.AVADDON.SMTHA
    RisingRansom.Avaddon!1.C7A8 (CLASSIC)
    IkarusTrojan-Ransom.Avaddon
    FortinetW32/Avaddon.C!tr.ransom
    AVGWin32:Trojan-gen
    Qihoo-360HEUR/QVM20.1.C75B.Malware.Gen

    How to remove Bulz.398488?

    Bulz.398488 removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment