Malware

Zusy.227591 removal instruction

Malware Removal

The Zusy.227591 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.227591 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Zusy.227591?


File Info:

crc32: 8A0971B1
md5: 2fe2b81195b85bd18c894cc6da7099d8
name: 2FE2B81195B85BD18C894CC6DA7099D8.mlw
sha1: e9e98b89024b3cadeea18694eb0d3377ed6508ce
sha256: 7e9a1396b73b30a296892528140bf544b8caac4b01920dbff32778efe4e9b5a2
sha512: 7081bf10003897dfea6259b176f6d138bdc1a7443ef49ef0cf4887cff395b4fcad64eb65ed3bedbe5ee587cfe1e58372aec5bec3168037b912b31dda8347c927
ssdeep: 1536:cH8A8Mlr/lUB9RIkiuA3PMza9IjYzBrsp5YYWUtCoOeTgqO5i4hTChhhh5ktV2D:ccYdkRItDBooYWECoOeTgqO5i4hTChh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName:
FileVersion: 12.0.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 12.0.7600.16385
FileDescription: Windows Media Player Network Sharing Service Configuration Application
OriginalFilename: WMPNSCFG.EXE
Translation: 0x0409 0x04b0

Zusy.227591 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.227591
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.195b85
CyrenW32/Virut.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Scribble [Inf]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.227591
MicroWorld-eScanGen:Variant.Zusy.227591
TencentWin32.Trojan.Generic.Hwww
Ad-AwareGen:Variant.Zusy.227591
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34628.fu0@aKH6fjii
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Virut.nm
FireEyeGeneric.mg.2fe2b81195b85bd1
EmsisoftGen:Variant.Zusy.227591 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Ren.Gen2
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Zusy.D37907
GDataGen:Variant.Zusy.227591
TACHYONTrojan/W32.PornoBlocker.92672.C
Acronissuspicious
McAfeeArtemis!2FE2B81195B8
MAXmalware (ai score=99)
MalwarebytesMalware.Heuristic.1001
PandaTrj/CI.A
RisingTrojan.Generic!8.C3 (CLOUD)
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Virtu.F
AVGWin32:Scribble [Inf]
Paloaltogeneric.ml
Qihoo-360Win32/Virus.Virut.HwoCEpsA

How to remove Zusy.227591?

Zusy.227591 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment