Malware

Zusy.310563 removal guide

Malware Removal

The Zusy.310563 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.310563 virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.310563?


File Info:

name: 2AF899A76782C9782BBC.mlw
path: /opt/CAPEv2/storage/binaries/786a285a76c7d3fba12ea350f5ea7863f983010d91fda051ae9e32720da5800c
crc32: 92C0B744
md5: 2af899a76782c9782bbcdf18a0c43037
sha1: d55eee04c816ac97f71d0df5c440b20bc6cdc72f
sha256: 786a285a76c7d3fba12ea350f5ea7863f983010d91fda051ae9e32720da5800c
sha512: fe26ef336583d2b168d0c15710dc6237b3af05bcb92e6259d5f0d81f1d40df1d134fffcb650abbdcca9742d5ebfe783c6859a48c4f34f2dc39c4642746ffe037
ssdeep: 98304:79IeEk8gY1r40Y7UKFhx7HtUPmj7bh9JSIklQJDRWQ:7yeWjprKjx7HtUPm/NSIkuJDT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10DF5233F4E2C344AE814F0BC887D837E84DBEE091C57EA5666AE1F45810C5B47296E6F
sha3_384: 682e9a8040b7168137a4c4b53dfc4e7d9b6f95699705a2f7a1f4500a492e7fb5548f1245757718134ff62636c22e7bf0
ep_bytes: 558d6c249881ec0c02000056e97c0900
timestamp: 2021-12-02 19:55:40

Version Info:

0: [No Data]

Zusy.310563 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.310563
CAT-QuickHealTrojan.Wacatac.S15862760
ALYacGen:Variant.Zusy.310563
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056cc351 )
K7GWTrojan ( 0056cc351 )
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/S-0cb2f1a4!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GOGM
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.310563
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:TrojanX-gen [Trj]
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazo+rYu0uegc0cVBaZH+NlKi)
Ad-AwareGen:Variant.Zusy.310563
EmsisoftGen:Variant.Zusy.310563 (B)
DrWebTrojan.PackedENT.124
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.2af899a76782c978
SophosML/PE-A + Troj/AGent-BFHO
IkarusTrojan.Win32.Crypt
GDataGen:Variant.Zusy.310563
AviraHEUR/AGEN.1117050
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASBOL.C639
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R346633
Acronissuspicious
McAfeeGenericRXLP-HG!2AF899A76782
VBA32BScope.Trojan.PackedENT
MalwarebytesTrojan.Crypt.Generic
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Razy.BSSG!tr
BitDefenderThetaAI:Packer.B13832991E
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Genetic.gen

How to remove Zusy.310563?

Zusy.310563 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment