Malware

Should I remove “Ser.Zusy.4838”?

Malware Removal

The Ser.Zusy.4838 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Zusy.4838 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Ser.Zusy.4838?


File Info:

name: 2E2560C173F4E84AEF08.mlw
path: /opt/CAPEv2/storage/binaries/bd2bfcb625ac828f5b25ec3f801afe6dd96dcad08eb652a96e86078aaae18a3f
crc32: 8567B584
md5: 2e2560c173f4e84aef0871c47a71a093
sha1: b962b6adee3cf24b3ec781ace6672a2b6f19681e
sha256: bd2bfcb625ac828f5b25ec3f801afe6dd96dcad08eb652a96e86078aaae18a3f
sha512: cba1b25d4087ba39f8391db1bbb242e5d856d69d28f935b9142e934bd3ad802797db23f48eb43f90700903bee3230a4638965a399b229b63b652e3bda25c61a2
ssdeep: 12288:0o7YNQ74WioPJicryGBWECTzMOthFdBlskauUPnIpm68k+A2OjFG8qS:twQy6icoECpbBmhk4EgS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118D423B6567F1A20D3B5B8F0A0D785246E38F8C9A088EE95132F1149156D3DF2736BC3
sha3_384: 737ef80df96ceb34b0ba93286632ab03769074d34a8fe356953db7b0a6cf5696c2919181c17c370f71c3b7363a8f1fca
ep_bytes: 60e8000000005d81ed0600000081ed10
timestamp: 2023-10-10 00:57:45

Version Info:

0: [No Data]

Ser.Zusy.4838 also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.Generic.ma5y
MicroWorld-eScanGen:Variant.Ser.Zusy.4838
FireEyeGeneric.mg.2e2560c173f4e84a
SkyhighBehavesLike.Win32.Generic.jc
McAfeeArtemis!2E2560C173F4
MalwarebytesMachineLearning/Anomalous.96%
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaPacked:Win32/Enigma.c75ab5c2
BitDefenderThetaGen:NN.ZexaF.36744.LyW@aGT9j!o
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.Enigma.AAF
APEXMalicious
ClamAVWin.Trojan.Scar-6903585-0
KasperskyUDS:Trojan.MSIL.Injurer
BitDefenderGen:Variant.Ser.Zusy.4838
AvastWAT:Blacked-E
TencentWin32.Trojan.Agen.Qsmw
SophosMal/Generic-S (PUA)
F-SecureHeuristic.HEUR/AGEN.1314133
VIPREGen:Variant.Ser.Zusy.4838
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Ser.Zusy.4838 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1CLTOQZ
GoogleDetected
AviraHEUR/AGEN.1314133
VaristW32/Agent.IHI.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Enigma
Kingsoftmalware.kb.b.997
ArcabitTrojan.Ser.Zusy.D12E6
ZoneAlarmUDS:Trojan.MSIL.Injurer
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Blacked.R633644
VBA32TScope.Malware-Cryptor.SB
ALYacGen:Variant.Ser.Zusy.4838
MAXmalware (ai score=82)
Cylanceunsafe
ZonerProbably Heur.ExeHeaderL
RisingTrojan.Agent!8.B1E (CLOUD)
IkarusTrojan.Win32.VBKrypt
AVGWAT:Blacked-E
Cybereasonmalicious.dee3cf
DeepInstinctMALICIOUS

How to remove Ser.Zusy.4838?

Ser.Zusy.4838 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment