Malware

About “Zusy.310541” infection

Malware Removal

The Zusy.310541 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.310541 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Zusy.310541?


File Info:

crc32: 0A759F80
md5: 738cd543912792b376d1a444c01f2a13
name: upload_file
sha1: 9de5396ba7bbb9b413df229948c63dad75cbebf0
sha256: a678db2b0d3f84a7edaa2c100192a43397a7be3d2c482b34d7bdaf1572f00720
sha512: 4fc8d0f676ae849a05449a2e8a95789faf9928d01bae75cb3dbc583b7c1b757e2f08d6740c6de493bc8fedc8c2efa4663d28f94848260f0f55f70245411707f7
ssdeep: 24576:zAE2gibWI2NZgDrHX5SQaeUVx151ZgMlXIqOUArsqmyiSCyiSVUJEq7zvVJf9w9:zAP192xtZVhlZfyiSCyiSV/CznFw9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1998-2017 Mark Russinovich
InternalName: Process Explorer
FileVersion: 16.21
CompanyName: Sysinternals - www.sysinternals.com
LegalTrademarks: Copyright (C) 1998-2017 Mark Russinovich
ProductName: Process Explorer
ProductVersion: 16.21
FileDescription: Sysinternals Process Explorer
OriginalFilename: Procexp.exe
Translation: 0x0409 0x04e4

Zusy.310541 also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGen:Variant.Zusy.310541
FireEyeGeneric.mg.738cd543912792b3
McAfeePUP-XLO-GW
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 0056b9fc1 )
BitDefenderGen:Variant.Zusy.310541
K7GWTrojan ( 0056b9fc1 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
GDataGen:Variant.Zusy.310541
KasperskyHEUR:HackTool.Win32.Agent.gen
AlibabaTrojanDownloader:Win32/Injector.0a4b22d2
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
EmsisoftGen:Variant.Zusy.310541 (B)
ComodoTrojWare.Win32.UMal.olgoi@0
F-SecureTrojan.TR/Injector.faezt
DrWebTrojan.Siggen9.63175
TrendMicroTROJ_GEN.R002C0WGV20
SophosGeneric PUA JN (PUA)
IkarusTrojan.Inject
CyrenW32/Trojan.LOZE-5036
AviraTR/Injector.faezt
MAXmalware (ai score=82)
Antiy-AVLHackTool/Win32.Agent
ArcabitTrojan.Jacard.D2F174
ZoneAlarmHEUR:HackTool.Win32.Agent.gen
MicrosoftTrojan:Win32/Ymacco.AAA6
CynetMalicious (score: 90)
AhnLab-V3Malware/Win32.RL_Generic.R346565
ALYacGen:Variant.Jacard.192884
Ad-AwareGen:Variant.Zusy.310541
MalwarebytesTrojan.MalPack.SMY.Generic
PandaTrj/GdSda.A
ZonerTrojan.Win32.91613
ESET-NOD32Win32/TrojanDownloader.Delf.CYW
TrendMicro-HouseCallTROJ_GEN.R002C0WGV20
SentinelOneDFI – Suspicious PE
FortinetW32/GenKryptik.EKLE!tr
BitDefenderThetaGen:NN.ZelphiCO.34144.XL3@aGsnHhgi
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Hacktool.ccf

How to remove Zusy.310541?

Zusy.310541 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment