Malware

Bulz.6910 malicious file

Malware Removal

The Bulz.6910 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.6910 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Bulz.6910?


File Info:

name: BA20ECE865F4A6B89D04.mlw
path: /opt/CAPEv2/storage/binaries/2c62eb780501df626d3ca37ea460607a1e620903b6f401c61434e667ffd642db
crc32: 835934F0
md5: ba20ece865f4a6b89d040cd29d3dad78
sha1: 719dd48703b553a95c4ea43ef6b5ce018ae4a11d
sha256: 2c62eb780501df626d3ca37ea460607a1e620903b6f401c61434e667ffd642db
sha512: 879514aa44d6d4178785b5eec373fd9952cd52addfdf449a400bd1bf2a976e1898c280d1de847c6a32213f9504e6a7691b57e6242738f73710914c571ea388a1
ssdeep: 196608:7sM8wCZ2BTvixQxZUmqmsvnAgcl/9W3ZnWEp1:IBK6QLUxmSG9uWED
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17976337B16714194C0D9CC398537BDF1B2F10E7A8F86A875B55BB9C232328A6F612C27
sha3_384: 030d04b452e470f45c4b223eebdc205492a2bc0f32707522c14202703770d91d6e45cf68ffdf59a42a074cf888306966
ep_bytes: ff250020400000000000000000000000
timestamp: 2082-12-16 05:40:03

Version Info:

Translation: 0x0000 0x04b0
Comments: Disha
CompanyName: Disha
FileDescription: Disha
FileVersion: 1.0.0.0
InternalName: WindowsApp6.exe
LegalCopyright: Disha © 2020
LegalTrademarks:
OriginalFilename: WindowsApp6.exe
ProductName: Disha
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Bulz.6910 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.Siggen7.35352
MicroWorld-eScanGen:Variant.Bulz.6910
FireEyeGeneric.mg.ba20ece865f4a6b8
SkyhighBehavesLike.Win32.Generic.vc
McAfeeArtemis!BA20ECE865F4
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
AlibabaTrojanDropper:Win32/Dapato.30c45d6f
K7GWTrojan ( 700000121 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36802.@p0@aCvyAKm
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.DYVF
APEXMalicious
KasperskyTrojan-Dropper.Win32.Dapato.qhli
BitDefenderGen:Variant.Bulz.6910
NANO-AntivirusTrojan.Win32.Dapato.hpospj
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan-Dropper.Dapato.Twhl
EmsisoftGen:Variant.Bulz.6910 (B)
F-SecureHeuristic.HEUR/AGEN.1307822
ZillyaDropper.Dapato.Win32.78904
Trapminesuspicious.low.ml.score
SophosMal/VMProtBad-A
IkarusTrojan.Black
JiangminTrojanDropper.Dapato.ackb
GoogleDetected
AviraHEUR/AGEN.1307822
Antiy-AVLTrojan[Dropper]/Win32.Dapato
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumMalware@#25lpq12k87ukb
ArcabitTrojan.Bulz.D1AFE
ZoneAlarmTrojan-Dropper.Win32.Dapato.qhli
GDataGen:Variant.Bulz.6910
VBA32TScope.Malware-Cryptor.SB
ALYacGen:Variant.Bulz.6910
MAXmalware (ai score=87)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
RisingMalware.Obfus/MSIL@AI.92 (RDM.MSIL2:kEzo/8dmpPiUaEhJIfhgUg)
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/Agent.BVF!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS

How to remove Bulz.6910?

Bulz.6910 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment