Malware

Ser.Zusy.2528 (B) information

Malware Removal

The Ser.Zusy.2528 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Zusy.2528 (B) virus can do?

  • Executable code extraction
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Steals private information from local Internet browsers
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
freekzvideo.cloud

How to determine Ser.Zusy.2528 (B)?


File Info:

crc32: 5BC65F17
md5: e827789d4fbe4f8b8655be2124614de7
name: id3.exe
sha1: c15f03aaa822c3d73f587be6602068bb01b11ec0
sha256: 787bff7f6587289da61eb4fdcc71b4366aee57b36912ae1e4d463dbf9b037eb8
sha512: 57f9389a7c0945878e75b9c2eb19565bc7a1eddbfb5074b86eeff2c6d31b3eb355f8f98f9e1a8bf339da8310a566b760acb907207dd5c91d86d598f6988e9d9b
ssdeep: 24576:BtAdtYWzaiyc2iv1a8vtdwt2XuxdwNmkZ84tFDOsoefAgbsM5czl:BSdtYc/FVdo2XKyX7LfAg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: CorpRight(C) 2020
InternalName: Main
FileVersion: 1, 0, 0,2
CompanyName: Microsoft Corporation
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Microsoft Corporation Main
SpecialBuild:
ProductVersion: 1, 0, 0, 2
FileDescription: Teamviewer Config
OriginalFilename: Config.exe
Translation: 0x0804 0x04b0

Ser.Zusy.2528 (B) also known as:

MicroWorld-eScanGen:Variant.Ser.Zusy.2528
FireEyeGeneric.mg.e827789d4fbe4f8b
CAT-QuickHealTrojan.Multi
BitDefenderThetaGen:NN.ZexaF.34122.4r0@a0Wnmjjb
McAfeeGenericRXAA-AA!E827789D4FBE
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 005189531 )
BitDefenderGen:Variant.Ser.Zusy.2528
K7GWTrojan ( 005189531 )
Cybereasonmalicious.aa822c
ArcabitTrojan.Ser.Zusy.D9E0
BaiduWin32.Trojan.Farfli.bc
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GDataGen:Variant.Ser.Zusy.2528
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/Kryptik.2430411d
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
SophosMal/Generic-S
ComodoMalware@#1p294djpkk4wo
F-SecureTrojan.TR/Crypt.Agent.fxpmw
DrWebTrojan.PWS.Spy.21448
McAfee-GW-EditionBehavesLike.Win32.Generic.th
EmsisoftGen:Variant.Ser.Zusy.2528 (B)
IkarusTrojan.Win32.Bulta
AviraTR/Crypt.Agent.fxpmw
Antiy-AVLTrojan/Win32.Pynamer
MicrosoftTrojan:Win32/Occamy.C
ZoneAlarmUDS:DangerousObject.Multi.Generic
AhnLab-V3Trojan/Win32.Infostealer.C4075542
ALYacGen:Variant.Ser.Zusy.2528
MAXmalware (ai score=86)
VBA32suspected of Trojan.Downloader.gen.h
MalwarebytesSpyware.Socelars
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.HCXM
TrendMicro-HouseCallTROJ_GEN.R002H09EP20
YandexTrojan.Kryptik!8vt2rMiPBhs
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.EFRL!tr
Ad-AwareGen:Variant.Ser.Zusy.2528
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Generic/Trojan.fc5

How to remove Ser.Zusy.2528 (B)?

Ser.Zusy.2528 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment