Malware

Zusy.270368 (B) information

Malware Removal

The Zusy.270368 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.270368 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Operates on local firewall’s policies and settings
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to disable Windows Defender
  • Attempts to modify or disable Security Center warnings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.270368 (B)?


File Info:

crc32: A8F0A704
md5: e8468421a39baf5410625cf3e2ecd3ce
name: E8468421A39BAF5410625CF3E2ECD3CE.mlw
sha1: 63c58b02566ec111bf68ab64fa051b0b65b75941
sha256: 23718d10aa1b3d15074df41b15706d74f669ee4cab49898a3100c55cffb0e028
sha512: 5310a6af67ed6ca40322d041c780975534538484ca3bcd74ff6c7ef0cd0600564ca699543142bfe5237471b5b883a29908778ebae7c2bbc8c2d119dd10f90d4d
ssdeep: 3072:jfb+y9Fwo58qIs2rsfXictpG/pWc2MllgRbHk:zb+yLd54r6/MWFe4Hk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.270368 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052050b1 )
Elasticmalicious (high confidence)
DrWebTrojan.Dyre.43
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.270368
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3624839
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/IRCNite.98436dce
K7GWTrojan ( 0052050b1 )
Cybereasonmalicious.1a39ba
CyrenW32/Trojan.BQD.gen!Eldorado
SymantecPacked.Generic.493
ESET-NOD32a variant of Win32/Kryptik.GALH
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Ramnit-8989011-0
KasperskyBackdoor.Win32.IRCNite.kaw
BitDefenderGen:Variant.Zusy.270368
NANO-AntivirusTrojan.Win32.Reset.ewouqw
ViRobotTrojan.Win32.Z.Razy.143360.MQ
MicroWorld-eScanGen:Variant.Zusy.270368
TencentTrojan.Win32.BitCoinMiner.la
Ad-AwareGen:Variant.Zusy.270368
SophosMal/Generic-S + Mal/EncPk-AOP
ComodoTrojWare.Win32.Crypt.C@7vajd0
BitDefenderThetaGen:NN.ZexaF.34294.iqW@aSf@beci
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_KRYPTIK_HB120089.UVPM
McAfee-GW-EditionBehavesLike.Win32.Emotet.cc
FireEyeGeneric.mg.e8468421a39baf54
EmsisoftGen:Variant.Zusy.270368 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bzdeb
AviraHEUR/AGEN.1105010
eGambitUnsafe.AI_Score_97%
Antiy-AVLTrojan/Generic.ASMalwS.23DD15D
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ArcabitTrojan.Zusy.D42020
GDataGen:Variant.Zusy.270368
TACHYONBackdoor/W32.IRCNite.143360.F
AhnLab-V3Backdoor/Win32.Vawtrak.R215270
Acronissuspicious
McAfeeGenericRXDQ-YG!E8468421A39B
MAXmalware (ai score=100)
VBA32BScope.Trojan.Ramnit
MalwarebytesTrojan.MalPack.VAK
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_KRYPTIK_HB120089.UVPM
RisingTrojan.Generic@ML.97 (RDML:7u/udTkpiL/ukNFH2WqAhw)
YandexTrojan.GenAsa!hk2ZeY5KJZ8
IkarusTrojan.Win32.Tofsee
FortinetW32/Kryptik.CQXJ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Zusy.270368 (B)?

Zusy.270368 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment