Malware

Bulz.738632 removal

Malware Removal

The Bulz.738632 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.738632 virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Bulz.738632?


File Info:

crc32: 619107C2
md5: b1903a9c964a1bd6fafc78a5ec937ce4
name: B1903A9C964A1BD6FAFC78A5EC937CE4.mlw
sha1: a1f844ce89ecf92b2651b21057c09d6fa179d0c9
sha256: 17dd9ad4610647daa15d75f6c4709197bd98ea20783406f43b908b4c739e0b2a
sha512: 525febc362d0384dcd3a4a4a794d9e9c93892fdc46a2ea0b861ba6328f41b969ec8c625e0cd0124fec7a01365c49673e01893acc916331b992e84a85ac308f9c
ssdeep: 24576:bG1HhBo7zIXzQLfU4aewsAjSE6Ehg7mM+M6RkMkIM7gE6Eh67W:61/zQLfU7ljS0g7mM+M6RkMkIM7I067W
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 1984-2021 Adobe Systems Incorporated and its licensors. All rights reserved.
InternalName: AcroBroker.exe
FileVersion: 21.1.20138.422477
CompanyName: Adobe Systems Incorporated
ProductName: Adobe PDF Broker Process for Internet Explorer
ProductVersion: 21.1.20138.422477
FileDescription: Adobe PDF Broker Process for Internet Explorer
OriginalFilename: AcroBroker.exe
Translation: 0x0409 0x04e4

Bulz.738632 also known as:

K7AntiVirusRiskware ( 00584baa1 )
ClamAVWin.Ransomware.WannaCry-9856297-0
ALYacGen:Variant.Bulz.738632
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderGen:Variant.Bulz.738632
K7GWRiskware ( 00584baa1 )
CyrenW32/Emotet.BBS.gen!Eldorado
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Bulz.738632
Ad-AwareGen:Variant.Bulz.738632
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGen:Variant.Bulz.738632
EmsisoftGen:Variant.Bulz.738632 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.ORBA4W
McAfeeArtemis!B1903A9C964A
MAXmalware (ai score=81)
TrendMicro-HouseCallTROJ_GEN.R002H09IR21
IkarusVirus.Win32.Blackie
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/PossibleThreat
Paloaltogeneric.ml

How to remove Bulz.738632?

Bulz.738632 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment