Malware

Zusy.310144 malicious file

Malware Removal

The Zusy.310144 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.310144 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.310144?


File Info:

crc32: 52BEB361
md5: 525013b395372ab7a047c405b154aba6
name: 525013B395372AB7A047C405B154ABA6.mlw
sha1: 71a91f64ff5fffa48f466b04f389bf45e3d39815
sha256: 49d32065a09f04940953d1dec3ed16295cf18c5e71b8a92fcebdb0ee487af7fa
sha512: 511414f224943a90bc30d37d417abf6bf5faf3bca332662f9000b3003ef1ad83f3110c1883f6de4843df5cd3d702850707f53f5a8c5a6de6c00f50889512d566
ssdeep: 6144:6DKW1Lgbdl0TBBvjc/2RV/TJYolipHqVUJiS0wL4xbTRAV67TrPsaXeV9L:8h1Lk70Tnvjc2VOolihqemdAiT5KL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 by NirvanaHack 2017
Assembly Version: 1.0.0.0
InternalName: WolfTeam Nirvana Hack.exe
FileVersion: 1.0.0.0
CompanyName: by NirvanaHack
ProductName: WolfTeam Nirvana Hack
ProductVersion: 1.0.0.0
FileDescription: WolfTeam Nirvana Hack
OriginalFilename: WolfTeam Nirvana Hack.exe
Translation: 0x0000 0x04b0

Zusy.310144 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusUnwanted-Program ( 004d38111 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.310144
CylanceUnsafe
ZillyaTrojan.Generic.Win32.1137628
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaHackTool:MSIL/Generic.b90caeb4
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.395372
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GameHack.YP potentially unsafe
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.310144
MicroWorld-eScanGen:Variant.Zusy.310144
Ad-AwareGen:Variant.Zusy.310144
SophosGeneric PUA HB (PUA)
BitDefenderThetaGen:NN.ZexaF.34170.zq0@aCSHq5b
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.525013b395372ab7
EmsisoftGen:Variant.Zusy.310144 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.20B876A
MicrosoftPUA:Win32/Vigua.A
GDataGen:Variant.Zusy.310144
AhnLab-V3Trojan/Win32.Generic.C1997970
Acronissuspicious
McAfeeArtemis!525013B39537
MAXmalware (ai score=99)
VBA32Trojan.Wacatac
TrendMicro-HouseCallTROJ_GEN.R002H07IS21
RisingTrojan.Generic@ML.99 (RDML:KUUvFRGzt2tn+sbdHEL1lQ)
YandexRiskware.Agent!nbl/Lc0t+JI
IkarusHEUR.Trojan.Win32
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Zusy.310144?

Zusy.310144 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment