Trojan

Trojan.Win32.Buzus.eshg removal guide

Malware Removal

The Trojan.Win32.Buzus.eshg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Buzus.eshg virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

How to determine Trojan.Win32.Buzus.eshg?


File Info:

crc32: C0CDAE20
md5: f8190390749ee5da07fc25eb05925931
name: F8190390749EE5DA07FC25EB05925931.mlw
sha1: 3e0d3dc1c943c38ba53f82e0a9fc5a77455be06d
sha256: d2930954ba42905d2ad79939a13516835827a01b524270c5fb751aaa94344aae
sha512: dca3435a02d0e933594d9fb5b32c9ac878c525e77e617622eea48a7adeca5ba1fa32787e823fdaf8e555d2ee2dfef4d7a49369ec7d681ce660cbb0bf96e30687
ssdeep: 3072:SVK1FK5RBjuNp+j01sp2kq3MYnVVpB5zph7f9BdgonWT1C2ORB6DwdL:SEFKcf1rzVRlBd7OOv6Dw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Buzus.eshg also known as:

LionicTrojan.Win32.Buzus.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop1.44430
CynetMalicious (score: 100)
ALYacGen:Variant.TeslaCrypt.6
CylanceUnsafe
ZillyaTrojan.Buzus.Win32.53174
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojan:Win32/Buzus.c0b4cdf1
Cybereasonmalicious.0749ee
CyrenW32/Trojan.WBPS-7693
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Buzus-8030
KasperskyTrojan.Win32.Buzus.eshg
BitDefenderGen:Variant.TeslaCrypt.6
NANO-AntivirusTrojan.Win32.Buzus.hzffv
MicroWorld-eScanGen:Variant.TeslaCrypt.6
TencentWin32.Trojan.Buzus.Ebqf
Ad-AwareGen:Variant.TeslaCrypt.6
SophosMal/Generic-S
ComodoMalware@#1809vmwlud1cl
BitDefenderThetaAI:Packer.B7413A191F
VIPRETrojan.Win32.Buzus
TrendMicroTROJ_GEN.FA2EZLH
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.f8190390749ee5da
EmsisoftGen:Variant.TeslaCrypt.6 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Buzus.anvv
WebrootW32.Downloader.Gen
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.6CC083
KingsoftWin32.Troj.Buzus.(kcloud)
MicrosoftPWS:Win32/Zbot!ml
ArcabitTrojan.TeslaCrypt.6
GDataGen:Variant.TeslaCrypt.6
TACHYONTrojan/W32.Buzus.496640.G
Acronissuspicious
McAfeeArtemis!F8190390749E
MAXmalware (ai score=100)
VBA32SScope.Trojan.Zbot.gen
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.FA2EZLH
RisingTrojan.Generic@ML.92 (RDML:ZkT4W3dZTRbpq4gX8mzj7w)
YandexTrojan.GenAsa!/fRnGMqU/5o
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.1406027.susgen
FortinetW32/Buzus.ESHG!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Buzus.eshg?

Trojan.Win32.Buzus.eshg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment