Malware

Zusy.3100 removal tips

Malware Removal

The Zusy.3100 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.3100 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.3100?


File Info:

crc32: C505CC17
md5: 4282ab18852a226daf4b3ccfa07eb658
name: 4282AB18852A226DAF4B3CCFA07EB658.mlw
sha1: 9abe2412f1155c23a3e9b474a75d55ff7612e8d2
sha256: 79f4f6ea30c2234b4e3939614bde65be9603c1ed6b83422e68753acfa2ecbc09
sha512: 1633c2be5abdc72c59ebff432a4a3644db16de6e0b0b5ffa0cb684a818d91e23445793aee69410b03349258d07c4e0469e72ad1ff7345f7de16ca1317064f316
ssdeep: 384:Xfk8oEH3spJY8jVmaSJ9TTfAqVUB/MHGSI2QkLk24jXPl8va3XEWtwZ43gPRgwbU:c87YGCoVa0HG92Qo2XPybZIyU
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014
Assembly Version: 1.0.0.0
InternalName: svchost.exe
FileVersion: 1.0.0.0
ProductName: Bitcoin jacker
ProductVersion: 1.0.0.0
FileDescription: Bitcoin jacker
OriginalFilename: svchost.exe

Zusy.3100 also known as:

K7AntiVirusTrojan ( 004b67301 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Zusy.3100
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 004b67301 )
Cybereasonmalicious.8852a2
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/ClipBanker.F
APEXMalicious
AvastMSIL:Crypt-KB [PUP]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.3100
NANO-AntivirusTrojan.Win32.Fkm.euwhyb
MicroWorld-eScanGen:Variant.Zusy.3100
TencentMalware.Win32.Gencirc.10ba70f9
Ad-AwareGen:Variant.Zusy.3100
BitDefenderThetaGen:NN.ZemsilF.34110.bq1@aeRjCmo
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDD-TZ!4282AB18852A
FireEyeGeneric.mg.4282ab18852a226d
EmsisoftGen:Variant.Zusy.3100 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.bdesx
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.E0B8CC
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Zusy.3100
McAfeeGenericRXDD-TZ!4282AB18852A
MAXmalware (ai score=98)
VBA32Trojan.MSIL.gen.a.1
PandaTrj/CI.A
YandexTrojan.Agent!lrprMM6N43c
IkarusTrojan.Msil
MaxSecureTrojan.Malware.300983.susgen
AVGMSIL:Crypt-KB [PUP]

How to remove Zusy.3100?

Zusy.3100 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment