Malware

BAT/BadJoke.BZ (file analysis)

Malware Removal

The BAT/BadJoke.BZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BAT/BadJoke.BZ virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine BAT/BadJoke.BZ?


File Info:

crc32: 534702E2
md5: 171993486cf6931ca2bbfb024813d8e6
name: 171993486CF6931CA2BBFB024813D8E6.mlw
sha1: efb465e303c72004358f42984ab58b62ca486806
sha256: 8767e2771e0b0bb55757449bd88a9f9f328d291a3927ae25d7bf55ba24727377
sha512: ebf766b22cad619e1f32a5bd8655ce7a02101880ef901e28e2518dd2d92c0b0bb2e5bc83293882e4ab4d420ae2862640b97c74348d1c706eacdc906f36e84414
ssdeep: 1536:D7fPGykbOqjoHm4pICdfkLtAfupcWX50MxFY+yIOlnToIfdx0DN:fq6+ouCpk2mpcWJ0r+QNTBfdIN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BAT/BadJoke.BZ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005015ae1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S17666681
ALYacTrojan.GenericKD.36898567
CylanceUnsafe
ZillyaTool.Lazagne.Win32.102
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojan:BAT/Folders.1036cc42
K7GWTrojan ( 005015ae1 )
Cybereasonmalicious.303c72
SymantecML.Attribute.HighConfidence
ESET-NOD32BAT/BadJoke.BZ
ZonerTrojan.Win32.85523
APEXMalicious
AvastBV:Deleter-DO [Trj]
KasperskyTrojan.BAT.Folders.g
BitDefenderTrojan.GenericKD.36898567
ViRobotTrojan.Win32.Z.Powershell.90624.C
MicroWorld-eScanTrojan.GenericKD.36898567
TencentBat.Trojan.Folders.Dvzt
Ad-AwareTrojan.GenericKD.36898567
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DEE21
McAfee-GW-EditionBehavesLike.Win32.Ransom.mh
FireEyeGeneric.mg.171993486cf6931c
EmsisoftTrojan.GenericKD.36898567 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PowerShell.bj
eGambitUnsafe.AI_Score_73%
Antiy-AVLTrojan/Generic.ASMalwS.2B9EB3B
MicrosoftTrojan:BAT/Delwin.AK
ArcabitTrojan.Generic.D2330707
AegisLabTrojan.Win32.Tiny.trFe
GDataWin32.Trojan.PSE.DR6CWW
TACHYONTrojan/W32.Bsymem.90624
AhnLab-V3Malware/Gen.Reputation.C4342026
Acronissuspicious
McAfeeRDN/Generic.grp
MAXmalware (ai score=87)
VBA32Trojan.BAT.Folders
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DEE21
RisingTrojan.Generic@ML.96 (RDMK:3QoboGBXJIoBSpc11ffPSA)
IkarusTrojan.PowerShell.Crypt
MaxSecureTrojan.Malware.8603484.susgen
FortinetBAT/Folders.G!tr
AVGBV:Deleter-DO [Trj]
Paloaltogeneric.ml

How to remove BAT/BadJoke.BZ?

BAT/BadJoke.BZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment