Malware

Bulz.59362 malicious file

Malware Removal

The Bulz.59362 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.59362 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

How to determine Bulz.59362?


File Info:

crc32: 11B12136
md5: 1549546c9a5cce17ccdb88dfd3655c38
name: 1549546C9A5CCE17CCDB88DFD3655C38.mlw
sha1: 69a8f1ded425b3166de7b3cae5f92f5869b40d45
sha256: 32cf999f248e603939a4a2fd179d610623f1093c97bb74f0d848ff830ca62cec
sha512: 0f0225d9b9cc5d193981385f6ed1e5939c2542bd5ad4b871148c1e2445df8cea6794075dfa9b9466d4338e3056735ca252f1bbffbbeb6a029f52fa214624fca5
ssdeep: 24576:dg8jVE+E9AROKGq44MgUceV4fgo91SqRU:dg6q+NRrG4t/m
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: xa9 Quick Heal Technologies Ltd. All rights reserved.
InternalName: onlinent.exe
FileVersion: 11.1.0.11
CompanyName: Quick Heal Technologies Ltd.
ProductName: Quick Heal AntiVirus
ProductVersion: 18.00
FileDescription: Online Protection
OriginalFilename: onlinent.exe
Translation: 0x0409 0x04b0

Bulz.59362 also known as:

K7AntiVirusTrojan ( 0009162c1 )
Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.59362
CylanceUnsafe
ZillyaDropper.NetTraveler.Win32.3
K7GWTrojan ( 0009162c1 )
SymantecTrojan.Travnet
APEXMalicious
MicroWorld-eScanGen:Variant.Bulz.59362
Ad-AwareGen:Variant.Bulz.59362
MicrosoftTrojanDownloader:Win32/Travnet.B
MalwarebytesBackdoor.Bot
FortinetW32/Agent.PIL!tr
AVGWin32:TrojanX-gen [Trj]

How to remove Bulz.59362?

Bulz.59362 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment