Malware

About “Bulz.633831” infection

Malware Removal

The Bulz.633831 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.633831 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.633831?


File Info:

crc32: F0C6CF04
md5: 15aadb9eb6a136cb89f0c441770ec6a0
name: 15AADB9EB6A136CB89F0C441770EC6A0.mlw
sha1: ce20d87c83b3d86ca2f78516f7b714786e3e9def
sha256: 47b85abee8a07e79ad95f48a3e3addf7235144b67b0350e2f9ac80e66f97e583
sha512: 8797efedbb9382700e4f68382857bc9afb7a32cf79d7946bbd23ce6d6592a1d91cfb8f0ca3aa957ebc62316824a28a71ad97cc8785f813f38c6f50125d39a8f9
ssdeep: 384:qvLWrfGW81MvSKhV19xjdzPnlkJvTQbgvSmFw:GLaf+OtjlkJvF2
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: EfsPotato.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: EfsPotato.exe

Bulz.633831 also known as:

LionicRiskware.Win32.Bulz.1!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Bulz.633831
SangforSuspicious.Win32.Bulz.633831
K7GWHacktool ( 0058147b1 )
K7AntiVirusHacktool ( 0058147b1 )
ESET-NOD32MSIL/HackTool.Agent.QH
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyHEUR:Exploit.MSIL.Agent.gen
BitDefenderGen:Variant.Bulz.633831
MicroWorld-eScanGen:Variant.Bulz.633831
TencentMsil.Exploit.Agent.Dyqs
Ad-AwareGen:Variant.Bulz.633831
SophosATK/EfsPotato-A
McAfee-GW-EditionRDN/Generic Exploit
FireEyeGen:Variant.Bulz.633831
EmsisoftGen:Variant.Bulz.633831 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Malware.Gen
AviraTR/Hacktool.xbdsk
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Bulz.D9ABE7
GDataGen:Variant.Bulz.633831
AhnLab-V3HackTool/Win.Agent.C4612766
McAfeeRDN/Generic Exploit
MAXmalware (ai score=81)
MalwarebytesRiskWare.HackTool
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.QH!exploit
AVGWin32:Trojan-gen

How to remove Bulz.633831?

Bulz.633831 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment