Malware

Zusy.310532 information

Malware Removal

The Zusy.310532 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.310532 virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.310532?


File Info:

name: D6B97BB52F3B1E13A295.mlw
path: /opt/CAPEv2/storage/binaries/0f4f6b4320f26c7d0e48964146773cf0811f0f507ce54ff3d757a7e9588d5d5c
crc32: AB3E015B
md5: d6b97bb52f3b1e13a295b6e523fcc0d5
sha1: 8012709349151c5cf050df1569a77a5b9cccb5e6
sha256: 0f4f6b4320f26c7d0e48964146773cf0811f0f507ce54ff3d757a7e9588d5d5c
sha512: c2453dc983b6709d0dff331440acc4a6b1bb4bde861fd7d442504ba08921762ae8b4e28203a5f72ff4e20a3001e21ebe45359d454a2bccf2910f1185ddf0f59d
ssdeep: 49152:NsbeqYO71aCuPVBQxsmT3NmGKoth51V+E+hbBRco/1atyQDp68QVosnyGd9UDpGb:NlqJ1uBkbM4h5bpoZf8kosbd9UDWpdW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2F52268D6D33730DFD46CF678D2B49B42F9080DA3C0696B62D799E03D82D639096ADC
sha3_384: cd7b196a044a8b54f532e4adf58156258d8b179278f543f7ce7f59124e4692655791ee87e5ad2412bf98bfbec96fd5db
ep_bytes: 558d6c249881ec0c02000056e9640b00
timestamp: 2021-11-29 11:48:47

Version Info:

0: [No Data]

Zusy.310532 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.310532
FireEyeGeneric.mg.d6b97bb52f3b1e13
CAT-QuickHealTrojan.Wacatac.S15862760
ALYacGen:Variant.Zusy.310532
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056cc351 )
K7GWTrojan ( 0056cc351 )
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaAI:Packer.9F8494481E
CyrenW32/S-0cb2f1a4!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GOGM
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.310532
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.Zusy.310532
EmsisoftGen:Variant.Zusy.310532 (B)
DrWebTrojan.PackedENT.124
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
SophosML/PE-A + Troj/AGent-BFHO
IkarusTrojan.Win32.Crypt
GDataGen:Variant.Zusy.310532
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASBOL.C639
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R346633
McAfeeGenericRXHI-ZQ!D6B97BB52F3B
VBA32BScope.Trojan.PackedENT
MalwarebytesTrojan.Crypt.Generic
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazrflu7aUtyTyXljfrqhOEhf)
FortinetW32/Razy.BSSG!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Genetic.gen

How to remove Zusy.310532?

Zusy.310532 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment