Malware

Zusy.253863 removal instruction

Malware Removal

The Zusy.253863 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.253863 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

Related domains:

wpad.local-net

How to determine Zusy.253863?


File Info:

name: 88BA0AC8BBEA89EFAAC5.mlw
path: /opt/CAPEv2/storage/binaries/03ed299bc9ba486cfdb2e1ebc64187151a95b253cbeb54df53f27d55fce58209
crc32: 58C07533
md5: 88ba0ac8bbea89efaac56ce36523a76f
sha1: 88d4fa2933153b2ff843641a756f6fe635753586
sha256: 03ed299bc9ba486cfdb2e1ebc64187151a95b253cbeb54df53f27d55fce58209
sha512: 11889ed991fc575e340871711ce8bb7c58f9833127633b059cdd3e97d846bf99238e14286c7f03ce796542bbc5bfa2966d8ece50c7181b9c7797fc03794dfb9a
ssdeep: 3072:mcrP+T1Yp7tDDkyX+WTHuDz6avQsKhwW5Bgvexk:m++T16Dk0KDz6avQ15+Gu
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18474D025B2A14E3BED272BFDE0AF88DA550E99A203CD00D72BF496E7DD101D5003ED29
sha3_384: 771ecde55f616f9c9cf838e15359b65933c10fd3de1d8cf7db9b95b37e4dae5960ca34d7f62a1e15fa211aec197db505
ep_bytes: e980110000e9933e0000e9263f0000e9
timestamp: 2017-08-29 03:17:44

Version Info:

0: [No Data]

Zusy.253863 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.253863
FireEyeGeneric.mg.88ba0ac8bbea89ef
McAfeeGenericRXCQ-QC!88BA0AC8BBEA
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusPassword-Stealer ( 004d88671 )
AlibabaTrojan:Win32/Fareit.44dc0eda
K7GWPassword-Stealer ( 004d88671 )
Cybereasonmalicious.8bbea8
SymantecTrojan!im
ESET-NOD32Win32/PSW.Fareit.L
TrendMicro-HouseCallTSPY_FAREIT_GI08043D.UVPM
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.253863
AvastWin32:LokiBot-A [Trj]
TencentMalware.Win32.Gencirc.10bb0b23
Ad-AwareGen:Variant.Zusy.253863
ZillyaTrojan.Fareit.Win32.22376
TrendMicroTSPY_FAREIT_GI08043D.UVPM
McAfee-GW-EditionBehavesLike.Win32.Generic.fz
EmsisoftGen:Variant.Zusy.253863 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.253863
MAXmalware (ai score=99)
MicrosoftTrojan:Win32/Skeeyah.A!rfn
AhnLab-V3Malware/Win32.Generic.C2323862
ALYacGen:Variant.Zusy.253863
VBA32BScope.Trojan.Agentb
APEXMalicious
RisingTrojan.Generic@ML.100 (RDML:2pKeSqFuNT1axBwa6kcL2Q)
YandexTrojan.GenAsa!vvqfnPcYPU4
IkarusTrojan.Win32.PSW
FortinetW32/Generic.AP.138937!tr
AVGWin32:LokiBot-A [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.253863?

Zusy.253863 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment