Trojan

Should I remove “Trojan:Win32/Bulta!rfn”?

Malware Removal

The Trojan:Win32/Bulta!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Bulta!rfn virus can do?

  • Executable code extraction
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

caiyundaifu.top

How to determine Trojan:Win32/Bulta!rfn?


File Info:

crc32: F94FBD77
md5: 043781cbc40ed73c703b5cf18d1eb2a9
name: CL3306.exe
sha1: db078bd16717ced516bff5b96a0a2f91c366be80
sha256: 7ae978ce0c3f2e56dae779d537d393ed7c6906a7e23fee747d02dc5c015155ec
sha512: 97c5b164768536d7456dfc2d6286419337c2f7c3b0c0921e293afdc955b0f069e832858c8099ed539973ff1084f33755abaef8e69278292a36dfb32ff485ec5e
ssdeep: 3072:/3QirmqttaEU2lOgPrB803jTV+65lMET6CA:/Ax6rhV+AlMan
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Bulta!rfn also known as:

MicroWorld-eScanGen:Variant.Graftor.595622
McAfeeGenericRXHY-TQ!043781CBC40E
CylanceUnsafe
ZillyaTrojan.Farfli.Win32.32749
AegisLabTrojan.Win32.APosT.4!c
SangforMalware
K7AntiVirusTrojan ( 00521b151 )
BitDefenderGen:Variant.Graftor.595622
K7GWTrojan ( 00521b151 )
CrowdStrikewin/malicious_confidence_80% (W)
TrendMicroTROJ_GEN.R015C0DBE20
APEXMalicious
Paloaltogeneric.ml
GDataWin32.Backdoor.Zegost.34SKNU
KasperskyTrojan.Win32.APosT.ict
AlibabaTrojan:Win32/APosT.4f0e968a
NANO-AntivirusTrojan.Win32.Farfli.fqiwwf
ViRobotTrojan.Win32.Z.Graftor.122880.B
RisingBackdoor.Farfli!8.B4 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Graftor.595622 (B)
ComodoMalware@#1equfpr9nyho
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader28.21037
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionGenericRXHY-TQ!043781CBC40E
FireEyeGeneric.mg.043781cbc40ed73c
SophosMal/Generic-S
SentinelOneDFI – Malicious PE
CyrenW32/Trojan.OQCG-6469
JiangminTrojan.APosT.zr
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Bulta!rfn
ArcabitTrojan.Graftor.D916A6
ZoneAlarmTrojan.Win32.APosT.ict
AhnLab-V3Malware/Win32.Generic.C3251323
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34090.hmW@aabXs1h
ALYacGen:Variant.Graftor.595622
VBA32BScope.Trojan.Downloader
MalwarebytesBackdoor.Farfli
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.BLQC
TrendMicro-HouseCallTROJ_GEN.R015C0DBE20
TencentWin32.Trojan.Apost.Crf
YandexBackdoor.Farfli!vKx2RkAjXng
IkarusTrojan.Win32.Injector
FortinetW32/Generic.AC.450D72
Ad-AwareGen:Variant.Graftor.595622
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
Qihoo-360Win32/Trojan.e97

How to remove Trojan:Win32/Bulta!rfn?

Trojan:Win32/Bulta!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment