Malware

Bulz.517843 removal guide

Malware Removal

The Bulz.517843 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.517843 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
server039.com

How to determine Bulz.517843?


File Info:

crc32: 1278C80D
md5: 38fbddeef497c50f580f95103ffb489f
name: 38FBDDEEF497C50F580F95103FFB489F.mlw
sha1: 92a38725a32383fb09bd7dd6c88f4d6978b3e9b1
sha256: e5f118207a57529e43ea8c20b88dce5063274124902491c24e07bb918d8e02c3
sha512: 1e6186706f49a423bf091f1f67c4450bac07bce9788f6aae17ca243ecec1f92aebec22d52b83b65a8f07be9c9d9740e53168f1c2c25ea9ea99e7e82efb4eb844
ssdeep: 192:sc3j+vEMbdJkwKRhRu4UpC7c39iFRl6nCAdGlYqufZnFptC0g2Sr5RAO:s2a+RLcmxTGfZHtWr53
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Bulz.517843 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.51927
ALYacBackdoor.RAT.Bit
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojanDownloader:Win32/Mukeralmoh.6254448b
K7GWTrojan-Downloader ( 0058071d1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Agent.FTY
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Bulz.517843
MicroWorld-eScanGen:Variant.Bulz.517843
Ad-AwareGen:Variant.Bulz.517843
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0DH421
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.38fbddeef497c50f
EmsisoftMalCert.A (A)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Mukeralmoh.STA
ArcabitTrojan.Bulz.D7E6D3
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Bulz.517843
AhnLab-V3Trojan/Win.Generic.R435077
McAfeeArtemis!38FBDDEEF497
MAXmalware (ai score=84)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DH421
IkarusWin32.Outbreak
FortinetW32/Agent.FTY!tr
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgkASZoA

How to remove Bulz.517843?

Bulz.517843 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment