Malware

About “Zusy.251491 (B)” infection

Malware Removal

The Zusy.251491 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.251491 (B) virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.251491 (B)?


File Info:

crc32: 4C5D2A01
md5: 6223c4c865ce187fdb09d625c7641b83
name: 6223C4C865CE187FDB09D625C7641B83.mlw
sha1: 770a0d17e036c57e829bd1fe49f5d3525c198615
sha256: 19804c0341ec2408b025626ac9259438f9c403104f155eedfa9b2395d85490b3
sha512: bf19f3b670adc1ca6a9a3eafe23e69096fa1d26866729df7d42e27c9394049a882534e5036a45746bc93fd0a6d9141b2e3686b2048406ae899ef2a30c7de39da
ssdeep: 384:bukvwKwq6u4f+e70tYt3DM2UB5e6KKKKKKKKKKKKKKKKKKKKKKKKKDexildQznF:b42+0WRM2UBbxilU6hzVUo2+0WJM2UB
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.0
InternalName: hidden-tear-decrypter.exe
FileVersion: 1.0.0.0
ProductName: hidden-tear-decrypter
ProductVersion: 1.0.0.0
FileDescription: hidden-tear-decrypter
OriginalFilename: hidden-tear-decrypter.exe

Zusy.251491 (B) also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.MSIL.Agent.j!c
ALYacGen:Variant.Zusy.251491
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1101134
SangforTrojan.Win32.Tiggre.rfn
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Tiggre.a14089c0
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.865ce1
SymantecRansom.HiddenTear!g1
APEXMalicious
AvastOther:Malware-gen [Trj]
ClamAVWin.Trojan.Agent-1849349
KasperskyTrojan-Ransom.MSIL.Agent.fqny
BitDefenderGen:Variant.Zusy.251491
NANO-AntivirusTrojan.Win32.Ransom.fcmtgr
ViRobotTrojan.Win32.Z.Agent.218624.BJ
MicroWorld-eScanGen:Variant.Zusy.251491
TencentMalware.Win32.Gencirc.11495f9b
Ad-AwareGen:Variant.Zusy.251491
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34796.nm0@aGmgb5c
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_CRYPTEAR.AB
McAfee-GW-EditionRansomware-FTD!6223C4C865CE
FireEyeGeneric.mg.6223c4c865ce187f
EmsisoftGen:Variant.Zusy.251491 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.pjxp
WebrootW32.Trojan.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.24FAA62
MicrosoftRansom:MSIL/HiddenTear
GDataGen:Variant.Zusy.251491
AhnLab-V3Trojan/Win32.HDC.C956966
McAfeeRansomware-FTD!6223C4C865CE
MAXmalware (ai score=98)
VBA32TScope.Trojan.MSIL
MalwarebytesRansom.HiddenTearDecrypter
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_CRYPTEAR.AB
IkarusTrojan-Ransom.KD
MaxSecureTrojan.Malware.74483696.susgen
FortinetMSIL/Generic.AP.1D1BCC!tr
AVGOther:Malware-gen [Trj]

How to remove Zusy.251491 (B)?

Zusy.251491 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment