Malware

About “Zusy.278255” infection

Malware Removal

The Zusy.278255 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.278255 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Anomalous binary characteristics

How to determine Zusy.278255?


File Info:

name: 83CB0E700AD51E7FEE3E.mlw
path: /opt/CAPEv2/storage/binaries/20d5ff683df971086a913f7ff47ff2aefe04f01742efb071eb1c98a6727a40c9
crc32: 2C2AB5F9
md5: 83cb0e700ad51e7fee3e026a63cb4bbf
sha1: af6ed97e508919949039281a823c6880d10b41d1
sha256: 20d5ff683df971086a913f7ff47ff2aefe04f01742efb071eb1c98a6727a40c9
sha512: b9b705a1ff5c15b0edb070951a0805f2d872571f5a42865a726ee381e199063d99e987c494d4efb4f3a6f2edfaad30b1d80fb1f2c9c6e10566aa62d835a74edc
ssdeep: 384:FdgaNcJrkl07aKJ0nYq6ySaAMgiJdkxiP24BO9CYNz3KTRWwStvPAZDkW21WsOWN:RUeP6CzJdkxiHBVYz3YYA72d
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17153F6117AE09131E8F327B15A7C7120A5BEF8B11B31D9DF521086CA6C31BD2DAB479B
sha3_384: 35e6364d6ec65e3b9cbdd8e274a54631373c60bf331dce64cf5c34f7b0f917b4253778c952ade061de58b251e4d24fd7
ep_bytes: e8a1030000e94efdffffcccccccccc3b
timestamp: 1996-09-11 10:05:54

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Windows Update Application Launcher
FileVersion: 7.6.7601.19161 (win7sp1_gdr.160212-0600)
InternalName: wuapp.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: wuapp.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 7.6.7601.19161
Translation: 0x0000 0x04b0

Zusy.278255 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.278255
FireEyeGeneric.mg.83cb0e700ad51e7f
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (D)
tehtrisGeneric.Malware
BitDefenderGen:Variant.Zusy.278255
Ad-AwareGen:Variant.Zusy.278255
EmsisoftGen:Variant.Zusy.278255 (B)
GDataGen:Variant.Zusy.278255
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.278255
MAXmalware (ai score=81)
APEXMalicious
RisingTrojan.Occamy!8.F1CD (RDMK:cmRtazpYzZ2mcy0qpJYFO877+RmU)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
Cybereasonmalicious.00ad51

How to remove Zusy.278255?

Zusy.278255 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment