Malware

Bulz.634524 malicious file

Malware Removal

The Bulz.634524 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.634524 virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Bulz.634524?


File Info:

crc32: 2F16E2FC
md5: e29ca1b2423284091cf67453eebbdd51
name: E29CA1B2423284091CF67453EEBBDD51.mlw
sha1: 50c68efc929c3de8c6605db33e85eed3d22fd847
sha256: ce127222461b6fa4f34b73cb08e642085a7519a8f8a3a6fc19c9b427cb65c6f7
sha512: 49a85b2c91633e359f3a71824c6f29a6051d7149090660be4b81865e0a8f59f713e985bd6e9f8edb1ae41e062d3e17797fad7a53bd8d4e6802fcb4e8227925eb
ssdeep: 24576:LsrG8jma9dsTcQ7Iww6w/rmQfgu5vPOTNIaewsAju:O9dsTh7Iwwjtfgu5HOTNlju
type: PE32+ executable (native) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: CSRSS.Exe
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 10.0.17134.1
FileDescription: Client Server Runtime Process
OriginalFilename: CSRSS.Exe
Translation: 0x0409 0x04b0

Bulz.634524 also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.634524
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW64/Ipamor.CZ.gen!Eldorado
AvastWin32:VB-FBX
ClamAVWin.Ransomware.WannaCry-9856297-0
BitDefenderGen:Variant.Bulz.634524
MicroWorld-eScanGen:Variant.Bulz.634524
Ad-AwareGen:Variant.Bulz.634524
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionArtemis
FireEyeGen:Variant.Bulz.634524
EmsisoftGen:Variant.Bulz.634524 (B)
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Bulz.634524
McAfeeArtemis!E29CA1B24232
MAXmalware (ai score=80)
VBA32Worm.AutoRun
MalwarebytesGeneric.Trojan.Malicious.DDS
IkarusTrojan.Win32
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Bulz.6330!tr
AVGWin32:VB-FBX

How to remove Bulz.634524?

Bulz.634524 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment