Trojan

Trojan:MSIL/Zusy.GPA!MTB removal guide

Malware Removal

The Trojan:MSIL/Zusy.GPA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Zusy.GPA!MTB virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Trojan:MSIL/Zusy.GPA!MTB?


File Info:

name: 2BB0B4681F91C62F85E1.mlw
path: /opt/CAPEv2/storage/binaries/a241eb65920f4dc8d7492bb34296b9288b76747875d3208f6724ed8ec6a8e8ce
crc32: 57850027
md5: 2bb0b4681f91c62f85e115b80c5163c7
sha1: dfc4e08cd4ac8a22e12a08ca0b0ead04bf85bbd0
sha256: a241eb65920f4dc8d7492bb34296b9288b76747875d3208f6724ed8ec6a8e8ce
sha512: eb6cdeddb62ea5de9673a6b78c9e0f46ab8dc6f0b73c9cf7f421033cb192230b70d72f838aacc50d57b878f1565cc4b787c6e1250855a4bd7259c7917f87e79f
ssdeep: 3072:RqUIXLbU0gSSvVg8Z9OYLdodahxi+F99HdIjlWBTXT6Rrty0N9OWNg4fn8aXBPj1:RqXLbU0Ktg69O+GkT/9HdG+TCrc0bOWd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18014F00223FAAF6BDB7A27F86476051127F4757B6C22D76D0DE090CF8852B419A86F13
sha3_384: 40cf69cb94d43e12b7cee1361450550f9e48b5ce25e83532e572a816c7221642006f6ab575821d38c8b4975e70bfb2e4
ep_bytes:
timestamp: 2094-03-13 20:30:10

Version Info:

0: [No Data]

Trojan:MSIL/Zusy.GPA!MTB also known as:

BkavW32.AIDetectMalware.CS
DrWebTrojan.Packed2.46200
SkyhighBehavesLike.Win32.Generic.cc
AlibabaTrojan:MSIL/Generic.abaa4ee4
TrendMicro-HouseCallTROJ_GEN.R002H01BG24
GoogleDetected
Kingsoftmalware.kb.a.976
MicrosoftTrojan:MSIL/Zusy.GPA!MTB
CynetMalicious (score: 100)
RisingTrojan.Generic@AI.100 (RDML:VNC2wtYZ+wAtOxELS85udg)
IkarusTrojan-Spy.Zbot
alibabacloudTrojan:Win/Zusy.GXZ2XJC

How to remove Trojan:MSIL/Zusy.GPA!MTB?

Trojan:MSIL/Zusy.GPA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment