Malware

Zusy.114991 removal instruction

Malware Removal

The Zusy.114991 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.114991 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.114991?


File Info:

crc32: 2C76B652
md5: 318fa1cb4b05794dc71e00af5bdb1979
name: 318FA1CB4B05794DC71E00AF5BDB1979.mlw
sha1: 5bcb6a23e3a0819488e27d15f753554a99b6587b
sha256: 24976448cfd605759d71d8a8d105a1793bf130e6f3e4351438653c785ad1a8ac
sha512: fe8a0498f13a818249de0d1a7835d20fbef1ff3d23a7a85f1c46986323972b1d8a387a954e46e221566a10f5a5bd29a386e45b71dcca78e6f644712cc2b8363f
ssdeep: 96:0pi2oPTFC3q+fUMl67Kvkj8GMKELc6IYmEQC+m1i9BVIiCvq9En8CmvU/gvxzNt:0fSTwquHYMKf6IYm+27VrsqYuZT
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: E.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: E.exe

Zusy.114991 also known as:

K7AntiVirusTrojan ( 004b06ea1 )
LionicTrojan.Win32.FrauDrop.b!c
Elasticmalicious (high confidence)
DrWebTrojan.Inject.5077
CynetMalicious (score: 99)
ALYacGen:Variant.Zusy.114991
CylanceUnsafe
ZillyaDropper.FrauDrop.Win32.21190
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004b06ea1 )
Cybereasonmalicious.b4b057
CyrenW32/A-13649ab8!Eldorado
SymantecTrojan.Zbot
ESET-NOD32a variant of MSIL/TrojanDownloader.Tiny.GL
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.114991
NANO-AntivirusTrojan.Win32.Drop.dlfkjk
MicroWorld-eScanGen:Variant.Zusy.114991
Ad-AwareGen:Variant.Zusy.114991
SophosML/PE-A
ComodoMalware@#22l96kes104bw
BitDefenderThetaGen:NN.ZemsilF.34266.am0@am6@Wjl
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.zt
FireEyeGeneric.mg.318fa1cb4b05794d
EmsisoftGen:Variant.Zusy.114991 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.FrauDrop.ubf
AviraTR/Dropper.MSIL.Gen
Antiy-AVLTrojan/Generic.ASMalwS.D89404
KingsoftWin32.Troj.FrauDrop.(kcloud)
MicrosoftTrojanDownloader:MSIL/Genmaldow.A
GDataGen:Variant.Zusy.114991
McAfeeArtemis!318FA1CB4B05
MAXmalware (ai score=80)
VBA32TrojanDropper.FrauDrop
MalwarebytesBackdoor.Bladabindi
PandaTrj/CI.A
YandexTrojan.DR.FrauDrop!FVPI7Wk781I
IkarusTrojan-Dropper.Win32.Dorifel
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.SHW!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Zusy.114991?

Zusy.114991 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment