Malware

Bulz.75104 removal

Malware Removal

The Bulz.75104 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.75104 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Authenticode signature is invalid
  • Sniffs keystrokes

How to determine Bulz.75104?


File Info:

name: EEAD61980E6861F7D75B.mlw
path: /opt/CAPEv2/storage/binaries/a000d446d5b1a276babac5d0d7339246480b04abcdf1bbab1ebd31ccc9c0a395
crc32: D4108FAB
md5: eead61980e6861f7d75b9efd8c3fe6a6
sha1: f7ba2d2f8b11040e37077f33ef455233cf26fe00
sha256: a000d446d5b1a276babac5d0d7339246480b04abcdf1bbab1ebd31ccc9c0a395
sha512: 4b91c7414215271a8e39506801fc709d7310418d2de8fa799fb7a4a61a43d8d9081d24c1099e983ba75c308d1a24a34f51a296c2ad715787b8dda01255da7c5d
ssdeep: 12288:qhet2m/mk84FLqnUtmZ7cmVSfkYfLvM0uG71BjXKWf0VXxKHVxsas:q8JdMS3a
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T147B49E92BFA1A2B2D7C641B852BBD7334D397925471085D3E3C45D295A302E0BB3E3AD
sha3_384: a54098cd72dbfc922ecf20ad434720232e717db0ba7faffc6a1c974df74b68f747754b505f0ae64e1768d680ba1c37ad
ep_bytes: e8b0d30000e9000000006a1468b81e47
timestamp: 2017-05-18 08:47:14

Version Info:

0: [No Data]

Bulz.75104 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.75104
FireEyeGeneric.mg.eead61980e6861f7
McAfeeGenericRXNC-BS!EEAD61980E68
CylanceUnsafe
ZillyaTrojan.Keylogger.Win32.56066
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 0050c7931 )
AlibabaTrojanSpy:Win32/Keylogger.17af6922
K7GWSpyware ( 0050c7931 )
Cybereasonmalicious.80e686
BitDefenderThetaGen:NN.ZexaF.34294.GuW@aGZoTqgi
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Keylogger.PTR
TrendMicro-HouseCallTROJ_GEN.R002C0PKQ21
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Bulz.75104
NANO-AntivirusTrojan.Win32.Keylog.epfugk
AvastFileRepMalware
Ad-AwareGen:Variant.Bulz.75104
ComodoMalware@#3aknvhrg4ca4f
VIPREMSIL.Spy.Keylogger
TrendMicroTROJ_GEN.R002C0PKQ21
McAfee-GW-EditionBehavesLike.Win32.Injector.hh
EmsisoftGen:Variant.Bulz.75104 (B)
IkarusTrojan.MSIL.Spy
GDataGen:Variant.Bulz.75104
WebrootW32.Keylogger.Gen
AviraTR/KeyLog.wibti
MAXmalware (ai score=81)
Antiy-AVLTrojan/Generic.ASMalwS.204ABCD
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C2291580
ALYacGen:Variant.Bulz.75104
VBA32BScope.Adware.Presenoker
APEXMalicious
YandexTrojan.GenAsa!J9fTnayQdDM
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Keylogger.BZU!tr.spy
AVGFileRepMalware
PandaTrj/GdSda.A

How to remove Bulz.75104?

Bulz.75104 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment