Malware

Should I remove “Bulz.840769”?

Malware Removal

The Bulz.840769 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.840769 virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Bulz.840769?


File Info:

name: E0AD68F624D891A1FCF9.mlw
path: /opt/CAPEv2/storage/binaries/60fd12e697dd0a5fbfa94e966051c83806707f03ef864e41f1b0c042c3ee556b
crc32: 9886CCA6
md5: e0ad68f624d891a1fcf968178aaeaca5
sha1: 636d30bd3c66abd125109aec6eb72818e7ad810c
sha256: 60fd12e697dd0a5fbfa94e966051c83806707f03ef864e41f1b0c042c3ee556b
sha512: 9a043c0627f4a899f44dd02285ff3aa3b6419fad523bb40edf5cdb2032c398a6573a83198a25ce7927f32edf17f58d1b2e4935ef923d5be687d39fe4a033264f
ssdeep: 12288:5kcZjgo6rTLqve3kf5yYyh2molAapyM9B:9qXL4yYv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F825873FEDE28F97ED82077646F3AB204BA555D94F3B03EC9314A9E84F892611B0095D
sha3_384: f184a1124a4617ce0570cf7bf231ab5a096bf9d29861add19770577afb810b052013bd8d010f73f9d0edf34182046772
ep_bytes: ff250020400000000000000000000000
timestamp: 2049-09-21 03:14:16

Version Info:

Translation: 0x0000 0x04b0
Comments: uXiwkpD
CompanyName: wYXiWnSTP
FileDescription: uXiwkpD
FileVersion: 5.26.79.31
InternalName: guFVrUl.exe
LegalCopyright: Copyright © 2021 wYXiWnSTP
LegalTrademarks:
OriginalFilename: guFVrUl.exe
ProductName: uXiwkpD
ProductVersion: 5.26.79.31
Assembly Version: 5.26.79.31

Bulz.840769 also known as:

MicroWorld-eScanGen:Variant.Bulz.840769
FireEyeGeneric.mg.e0ad68f624d891a1
McAfeeRDN/Generic PWS.y
K7AntiVirusTrojan ( 0058a6541 )
AlibabaTrojanSpy:MSIL/Stealer.092e8370
K7GWTrojan ( 0058a6541 )
Cybereasonmalicious.d3c66a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ADLB
TrendMicro-HouseCallTROJ_GEN.R002H0CKT21
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderGen:Variant.Bulz.840769
AvastWin32:Trojan-gen
TencentWin32.Trojan.Falsesign.Ajbp
Ad-AwareGen:Variant.Bulz.840769
SophosMal/Generic-S
DrWebTrojan.Siggen15.58209
TrendMicroTROJ_GEN.R002C0PL321
McAfee-GW-EditionRDN/Generic PWS.y
SentinelOneStatic AI – Malicious PE
EmsisoftGen:Variant.Bulz.840769 (B)
APEXMalicious
GDataGen:Variant.Bulz.840769
AviraTR/AD.RedLineSteal.aexga
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.840769
MAXmalware (ai score=89)
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.Agent.Gen
YandexTrojan.Kryptik!iSgdEoQErs8
IkarusTrojan.MSIL.Crypt
FortinetW32/GenKryptik.FNMI!tr
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Bulz.840769?

Bulz.840769 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment