Malware

How to remove “Zusy.106469”?

Malware Removal

The Zusy.106469 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.106469 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.106469?


File Info:

crc32: 7016729A
md5: 8ae7bff0219ecd7ae7b39e9b79b0b39d
name: 8AE7BFF0219ECD7AE7B39E9B79B0B39D.mlw
sha1: fae0a60cd0b5929cff9b6d51fcde65103340c910
sha256: 2379cacd8c085577be742f7f4ea5d36350b33f749d11431f5dc6084de306a6ec
sha512: 098923aca2f9c181a4453e646c2503672fe60342bf037dff2a3ced0483cdd027526cc1ce95b9da97963a0c5c2b5272fa45f49465103ba92e0258a34358e6a76b
ssdeep: 3072:+vTe3FbaBXFgX/syC724IiaO6PrA3mf7lnC32/bzAzUVdL9FiZNFbG2Cjv6Gz5l:l42/Hb3vrm87lnbLkFiHpJFM67R+R4
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Zusy.106469 also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.1775
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.106469
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaBackdoor:MSIL/Bladabindi.f2bed4dc
K7GWTrojan ( 700000121 )
Cybereasonmalicious.0219ec
BaiduMSIL.Backdoor.Bladabindi.a
CyrenW32/MSIL_Bladabindi.AB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.AY
APEXMalicious
AvastMSIL:GenMalicious-BDA [Trj]
ClamAVWin.Packed.Bladabindi-6917466-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.106469
NANO-AntivirusTrojan.Win32.Bladabindi.fhkkag
MicroWorld-eScanGen:Variant.Zusy.106469
TencentWin32.Trojan.Generic.Eern
Ad-AwareGen:Variant.Zusy.106469
SophosMal/Generic-R + Troj/Bbindi-W
ComodoMalware@#25cfsf0ggcw43
F-SecureTrojan.TR/Dropper.Gen7
BitDefenderThetaGen:NN.ZemsilF.34294.omW@aK8F!Oi
McAfee-GW-EditionBehavesLike.Win32.Generic.dm
FireEyeGeneric.mg.8ae7bff0219ecd7a
EmsisoftGen:Variant.Zusy.106469 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cpsqe
AviraTR/Dropper.Gen7
eGambitUnsafe.AI_Score_100%
MicrosoftBackdoor:MSIL/Bladabindi.AL
GDataGen:Variant.Zusy.106469
AhnLab-V3Trojan/Win32.Generic.C2710827
Acronissuspicious
McAfeeBackDoor-FDNN!8AE7BFF0219E
MAXmalware (ai score=100)
MalwarebytesBackdoor.NJRat
PandaTrj/GdSda.A
RisingBackdoor.Njrat!1.9E49 (CLASSIC)
YandexTrojan.Agent!T0kh0Bt0Fig
IkarusBackdoor.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Bbindi.W!tr
AVGMSIL:GenMalicious-BDA [Trj]
Paloaltogeneric.ml

How to remove Zusy.106469?

Zusy.106469 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment