Trojan

Trojan.Win32.Buzus.nqyg removal guide

Malware Removal

The Trojan.Win32.Buzus.nqyg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Buzus.nqyg virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Buzus.nqyg?


File Info:

crc32: 7172D127
md5: e42d038469600e6fdca0fdde900cc22b
name: E42D038469600E6FDCA0FDDE900CC22B.mlw
sha1: dc376bd4710f8b687d763113deb2bff2f97239ea
sha256: 11ce4d5f8cb99597a3794e07c09ddc78324c6a6eb92742bc2847746b3f51ec45
sha512: 51ef846b2a6ac90b201a1078a99946d86bf1c3da355365a6a3953155bba300fe0ed82b9a94e240102cb657f5b607949154c613da9ced1f4af2af810b37677c5d
ssdeep: 6144:FS2JDG0WV9INJLIBwWsWy01Q+vT9ydrSicUSD2ggph3AgbLWNxOn/sreS:vDGbVeuwzWn8d7vrCs+WGeS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0c0a 0x04b0
InternalName: stub
FileVersion: 1.00
CompanyName: server
ProductName: aaa
ProductVersion: 1.00
OriginalFilename: stub.exe

Trojan.Win32.Buzus.nqyg also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004cb25e1 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop3.1173
CynetMalicious (score: 100)
CAT-QuickHealTrojan.VBCrypt.MF.6298
ALYacGen:Trojan.Heur.sm0@bH@CZSG
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Buzus.849625e5
K7GWTrojan ( 004cb25e1 )
Cybereasonmalicious.469600
CyrenW32/VBInject.CC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.FHN
APEXMalicious
AvastWin32:GenMalicious-KKX [Trj]
KasperskyTrojan.Win32.Buzus.nqyg
BitDefenderGen:Trojan.Heur.sm0@bH@CZSG
NANO-AntivirusTrojan.Win32.MLW.dqlxp
MicroWorld-eScanGen:Trojan.Heur.sm0@bH@CZSG
TencentWin32.Trojan.Buzus.Ahof
Ad-AwareGen:Trojan.Heur.sm0@bH@CZSG
SophosML/PE-A + Mal/VB-FD
ComodoBackdoor.Win32.Agent.DMK2@1dgmwl
BitDefenderThetaAI:Packer.752D715D1B
VIPRETrojan.Win32.Buzus (v)
TrendMicroMal_BUZUS-6
McAfee-GW-EditionBehavesLike.Win32.VBObfus.fc
FireEyeGeneric.mg.e42d038469600e6f
EmsisoftGen:Trojan.Heur.sm0@bH@CZSG (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/VBNA.gzlo
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftVirTool:Win32/VBInject.RT
GDataGen:Trojan.Heur.sm0@bH@CZSG
AhnLab-V3Trojan/Win32.Poison.C416059
McAfeeBackDoor-DZP.b
MAXmalware (ai score=82)
VBA32Malware-Cryptor.VB.gen.1
MalwarebytesMachineLearning/Anomalous.100%
TrendMicro-HouseCallMal_BUZUS-6
RisingTrojan.VbUndef!1.99F7 (CLOUD)
YandexTrojan.GenAsa!ioIp1381Mus
IkarusPacked.Win32.CPEX-based
FortinetW32/VBInjector.fam!tr
AVGWin32:GenMalicious-KKX [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.Buzus.nqyg?

Trojan.Win32.Buzus.nqyg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment