Trojan

Should I remove “Trojan:Win32/Zusy.DKL!MTB”?

Malware Removal

The Trojan:Win32/Zusy.DKL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zusy.DKL!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Zusy.DKL!MTB?


File Info:

name: 29DCB0891131086B3002.mlw
path: /opt/CAPEv2/storage/binaries/916d6a9762453f79783c2adab7ee677205bd36d8258b7a5c00469d4383cadaba
crc32: 2CB3A25E
md5: 29dcb0891131086b30020de338a5895b
sha1: aae3c015cc3f7dd85e88a0f59e65825f2aa52efa
sha256: 916d6a9762453f79783c2adab7ee677205bd36d8258b7a5c00469d4383cadaba
sha512: da7c7cdf7d025be430f44360dfbf299d450b014fa54838b342097f9ca1b37acaffadd6ec0bb88dc416ff44cc829e2e353f7f9981c0903518113e762244f04db4
ssdeep: 6144:qAEZ3Z2B+Pv54sqwfLXisRuS2lsgx5ZypeLXisRuS2h:Sn2wP6sXLdRF2igXZyoLdRF2h
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1E274E02731E49067F961243F72B96E2746F953D278BB314BB363C36042F4AE613725A8
sha3_384: e89f882bac789a5030b14cd2a5b83887afb60fc459e432657df832bdf275430640bb58b690c7b126b46d88685279383d
ep_bytes: bf00000000564a5801d129d2504181c2
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Zusy.DKL!MTB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.29dcb0891131086b
McAfeeGlupteba-FTSD!29DCB0891131
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/Copak.41e5765c
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.911310
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CTNW
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Copak.vho
BitDefenderGen:Variant.Razy.866116
MicroWorld-eScanGen:Variant.Razy.866116
AvastWin32:Evo-gen [Susp]
TencentWin32.Trojan.Copak.Hugi
Ad-AwareGen:Variant.Razy.866116
SophosMal/Generic-R + Troj/Agent-BGOS
DrWebTrojan.Siggen16.21130
TrendMicroTROJ_GEN.R032C0PA122
McAfee-GW-EditionBehavesLike.Win32.RAHack.fc
EmsisoftGen:Variant.Razy.866116 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.866116
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=82)
ArcabitTrojan.Razy.DD3744
MicrosoftTrojan:Win32/Zusy.DKL!MTB
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34114.uuZ@aGo3wXi
ALYacGen:Variant.Razy.866116
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Agent.Generic
TrendMicro-HouseCallTROJ_GEN.R032C0PA122
RisingTrojan.Injector!1.CD26 (CLASSIC)
IkarusTrojan.Win32.Crypt
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Susp]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.121218.susgen

How to remove Trojan:Win32/Zusy.DKL!MTB?

Trojan:Win32/Zusy.DKL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment