SecuriteInfo.com.Variant.Bulz.386265.13566.10260

Classification: Malicious

SecuriteInfo.com.Variant.Bulz.386265.13566.10260 is a malicious file sample. Linked to Servhelper malware. Reported by 1 threat source, last seen 2021-03-15.

Detection summary

  • 31 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: SERVHELPER (S0382)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ServHelper Abuse.ch 2021-03-15 04:32:55 2021-03-15 04:32:55 malicious-activity S0382 ServHelper

Sample information

Filenames
SecuriteInfo.com.Variant.Bulz.386265.13566.10260
File type
application/x-dosexec
MD5
2bfa2d5248fd3ed10fee2eea0ee075c0
SHA-1
4541953ab415ed1b7cd7b11abb588d90b8566d03
SHA-256
a27fa7724da938df040a3e535f2be9cec4d6d93bd4f2e5ec2ba79560f84cb69c
First indexed
2021-03-15 05:15:05
Last updated
2026-04-30 23:00:59

Antivirus detections

EngineDetection
MicroWorld-eScanGen:Variant.Bulz.386265
McAfeeArtemis!2BFA2D5248FD
CylanceUnsafe
AlibabaTrojanDropper:MSIL/GoCLR.cb97b6f5
K7GWTrojan ( 00578ee41 )
CrowdStrikewin/malicious_confidence_80% (W)
SymantecTrojan.Gen.2
APEXMalicious
AvastWin64:Trojan-gen
CynetMalicious (score: 100)
KasperskyTrojan-Dropper.MSIL.Agent.seskgq
BitDefenderGen:Variant.Bulz.386265
RisingTrojan.GoCLR!8.12594 (CLOUD)
Ad-AwareGen:Variant.Bulz.386265
EmsisoftGen:Variant.Bulz.386265 (B)
McAfee-GW-EditionBehavesLike.Win64.Generic.vh
FireEyeGen:Variant.Bulz.386265
SophosMal/Generic-S
GDataGen:Variant.Bulz.386265
ESET-NOD32a variant of WinGo/GoCLR.A
MAXmalware (ai score=86)
ArcabitTrojan.Bulz.D5E4D9
MicrosoftTrojan:Win32/Wacatac.B!ml
ALYacGen:Variant.Bulz.386265
MalwarebytesMalware.AI.4239237678
TrendMicro-HouseCallTROJ_GEN.R002H09CD21
IkarusTrojan.WinGo.Goclr
eGambitUnsafe.AI_Score_100%
FortinetW32/GoCLR.A!tr
AVGWin64:Trojan-gen
Qihoo-360Win64/TrojanDropper.Generic.HgEASQsA