Malware

What is “Bulz.77744”?

Malware Removal

The Bulz.77744 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.77744 virus can do?

  • Sample contains Overlay data
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Bulz.77744?


File Info:

name: 1D3FAB6C280A02ABD20D.mlw
path: /opt/CAPEv2/storage/binaries/1f32bf46519997b20eb7a052a2f24d839bf020d04de43d513fbd752777b574dd
crc32: 77DF7710
md5: 1d3fab6c280a02abd20d692f49df2485
sha1: f4b04451a8b616372aefae9a4eccc678c98d7a13
sha256: 1f32bf46519997b20eb7a052a2f24d839bf020d04de43d513fbd752777b574dd
sha512: eb137ce657dca905b61b0fc361e6e54140c1ad6229e93eeb3e5445eb79d07ad284aecfc8f17e6bc70f883de782d6eb9e9b864d0910aeced227fe43f0a85142ce
ssdeep: 49152:GFl8BtlGHEwWHgln/4MnYYJ2ZhqSGLHkJEMy:Y2m1lwIDQy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15DA52903D7539177FD5620308C2A6B5416A3AFB46F22D2F7EE437609B9327C3257226A
sha3_384: 32ecdb2c28a4779c3ee7336c35deb8ede67a822ce00b86981039a4579323f2171dac819c6e9d1b7e5531db6f14134a24
ep_bytes: 6a706870170001e8b602000033ff57ff
timestamp: 2001-08-17 20:51:15

Version Info:

CompanyName: Microsoft Corporation
FileDescription: System Information
FileVersion: 5.1.2600.0 (XPClient.010817-1148)
InternalName: msinfo32.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: msinfo32.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.0
Translation: 0x0409 0x04b0

Bulz.77744 also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Bulz.77744
FireEyeGen:Variant.Bulz.77744
McAfeeArtemis!1D3FAB6C280A
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.154658
Sangfor[NULLSOFT PIMP INSTALL SYSTEM2]
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.c280a0
CyrenW32/Patched.CJ.gen!Eldorado
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Worm.Mabezat-5431
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.Bulz.77744
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Bulz.77744
SophosGeneric ML PUA (PUA)
VIPREGen:Variant.Bulz.77744
McAfee-GW-EditionBehavesLike.Win32.Virut.vh
EmsisoftGen:Variant.Bulz.77744 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Bulz.77744
AviraHEUR/AGEN.1244252
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
ALYacGen:Variant.Bulz.77744
MAXmalware (ai score=84)
MalwarebytesMalware.AI.3732625001
RisingTrojan.Generic!8.C3 (RDMK:cmRtazruP35geLgoBIzGQnvl/4Uw)
IkarusVirus.Win32.Fakefire
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Ipamor.7AD6!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Bulz.77744?

Bulz.77744 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment