Malware

Buzy.677 removal tips

Malware Removal

The Buzy.677 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Buzy.677 virus can do?

  • Attempts to connect to a dead IP:Port (4 unique times)
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
www.bing.com
www.uzzf.com
pic.uzzf.com
nz.qqtn.com
a.tomx.xyz

How to determine Buzy.677?


File Info:

crc32: B1C317AE
md5: da55ad5d52adfcfbd36776d2d2b7228b
name: DA55AD5D52ADFCFBD36776D2D2B7228B.mlw
sha1: cb760197e6e857c3fa59a8ff9702a6503f794b7a
sha256: 15cdfef240453331df8aba45f594ef2b9623f10ff92241858ba84b865f8d22b7
sha512: a590e01b3737e37775423623f18a629c7e66aab76a6c714082b4207ea261cdca2b29dd6b3df90dbcdb9e18629db54ea621b65113f65b6d309a92325bd8d18486
ssdeep: 6144:d8U2qy6rRZb7jxGYC5JoDzx65a2gdpizajMDWNrFmTQA7:tzy6rRxEB5MizVDcmTJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Buzy.677 also known as:

K7AntiVirusRiskware ( 0040eff71 )
CynetMalicious (score: 99)
ALYacGen:Variant.Buzy.677
CylanceUnsafe
ZillyaDownloader.Small.Win32.85055
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.d52adf
SymantecTrojan.ADH
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.MicroFake.vip
BitDefenderGen:Variant.Buzy.677
NANO-AntivirusTrojan.Win32.MicroFake.eakpyx
MicroWorld-eScanGen:Variant.Buzy.677
SophosGeneric ML PUA (PUA)
ComodoMalware@#24nwt3vek5bjv
BitDefenderThetaGen:NN.ZedlaF.34170.aq4@aWRs8Dk
VIPRETrojan.Win32.Generic!BT
TrendMicroDDOS_NITOL.SMD
McAfee-GW-EditionRDN/Generic FakeAlert
FireEyeGen:Variant.Buzy.677
EmsisoftGen:Variant.Buzy.677 (B)
SentinelOneStatic AI – Malicious SFX
JiangminTrojan/Generic.anshl
AviraHEUR/AGEN.1102175
Antiy-AVLTrojan/Generic.ASMalwS.165E8E2
KingsoftWin32.Troj.Generic.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Buzy.677
GDataGen:Variant.Buzy.677
McAfeeArtemis!DA55AD5D52AD
MAXmalware (ai score=82)
VBA32BScope.Trojan.Occamy
TrendMicro-HouseCallDDOS_NITOL.SMD
RisingTrojan.Lpkhijack!1.9987 (CLASSIC)
IkarusTrojan.Win32.MicroFake
MaxSecureWin.MxResIcn.Heur.Gen
AVGWin32:Malware-gen

How to remove Buzy.677?

Buzy.677 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment