Categories: Malware

Bulz.670664 removal tips

The Bulz.670664 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.670664 virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Bulz.670664?


File Info:

crc32: 5607C29Dmd5: 2007cd66875dfc8860cfb220895800bename: 2007CD66875DFC8860CFB220895800BE.mlwsha1: d012dfd4287d6084e77abe47bb83318a6955aa49sha256: 1e54dd79a995649c731059730b015d08ba562c7f906ff77cc51cb9c6a16bef1csha512: ba2d62aa770c4b6f0bd705b1d2e7e977a717ee0354b6fb66710fc8680641d4cc593d6a10cf2978b345b96b7fa7503d25e6bfc79b4235812dccfb7fd7a3eb8014ssdeep: 768:pFqRW3EMaUCTnjPGkbuKdrFE4qqTf36mo+0rTaFB2d+MT8ehqmFlW:yoaU8CkbNrFELq7g5TaadT8ehqmrWtype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0409 0x04b0InternalName: prctectFileVersion: 1.00.0102CompanyName: PTechProductName: xa0ProductVersion: 1.00.0102OriginalFilename: prctect.exe

Bulz.670664 also known as:

Bkav W32.AIDetect.malware2
K7AntiVirus Hacktool ( 005286081 )
Lionic Trojan.Win32.VB.l!c
DrWeb Trojan.Prutec
Cynet Malicious (score: 100)
CMC Generic.Win32.2007cd6687!MD
ALYac Gen:Variant.Bulz.670664
Cylance Unsafe
Zillya Trojan.VB.Win32.167629
Sangfor Trojan.Win32.Save.a
Alibaba TrojanSpy:Win32/Prutec.7d66652b
K7GW Hacktool ( 005286081 )
Cybereason malicious.6875df
Cyren W32/Trojan.EOSQ-5090
Symantec Spyware.e2give
ESET-NOD32 Win32/VB.QN
APEX Malicious
Avast FileRepMalware
ClamAV Win.Trojan.VB-5106
Kaspersky Trojan-Spy.Win32.VB.eh
BitDefender Gen:Variant.Bulz.670664
NANO-Antivirus Trojan.Win32.VB.bjmnsx
MicroWorld-eScan Gen:Variant.Bulz.670664
Tencent Win32.Trojan-Spy.Vb.mdj
Ad-Aware Gen:Variant.Bulz.670664
Sophos Mal/Prutec-A
Comodo TrojWare.Win32.VB.QN@zba
BitDefenderTheta Gen:NN.ZevbaF.34266.cmKfaq0yRrni
VIPRE Trojan.Win32.Generic!BT
TrendMicro TROJ_KILLAV.CA
McAfee-GW-Edition BehavesLike.Win32.Dropper.pc
FireEye Gen:Variant.Bulz.670664
Emsisoft Gen:Variant.Bulz.670664 (B)
SentinelOne Static AI – Malicious PE
Jiangmin TrojanSpy.Prutect.i
Webroot W32.Backdoor.Mosucker
Avira TR/VB.Downloader.Gen
eGambit Generic.Malware
Antiy-AVL Trojan/Generic.ASBOL.AA0
Kingsoft Win32.Troj.VB.eh.(kcloud)
Microsoft Trojan:Win32/Wacatac.B!ml
Arcabit Trojan.Bulz.DA3BC8
GData Gen:Variant.Bulz.670664
McAfee Artemis!2007CD66875D
MAX malware (ai score=99)
VBA32 TrojanSpy.VB
Panda Trojan Horse.AP2
TrendMicro-HouseCall TROJ_KILLAV.CA
Rising Trojan.VB.qz (CLASSIC)
Yandex Trojan.GenAsa!mRi46b2N3Uw
Ikarus Trojan-Spy.Win32.VB.eh
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Prutec.A!tr
AVG FileRepMalware
Paloalto generic.ml

How to remove Bulz.670664?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago