Malware

Zusy.318017 (B) removal tips

Malware Removal

The Zusy.318017 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.318017 (B) virus can do?

  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.318017 (B)?


File Info:

crc32: 25A55502
md5: 8d30c2dffcae235c94b724c8b3abfa2f
name: 8D30C2DFFCAE235C94B724C8B3ABFA2F.mlw
sha1: bbf4427d4145a942c7b5bfbba53063c2c91c32b0
sha256: 2ccca0a0a9f4950a3b766d32f068a9f49b6ce94ce8c0a2db33e52d8f194ef4fd
sha512: df9a40db972fcc280a2044e498543750c69c10a13928221cc871d5b3e1750e5ea8c23de44e497f1791ea35f2040180e5e0f472c66f1c993fed1070052c91b321
ssdeep: 6144:CUZpZnEc/Wm/NcMwIlzYEy5EIBcveRrl2cWYBEuZRBs1Ti1xGerEhgVIXFMLGdD:xXBEyWwGMTlzYX5E0lUFuaRerLIX/P
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Sticky
FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7600.16385
FileDescription: Sticky Notes
OriginalFilename: StikyNot.exe
Translation: 0x0409 0x04b0

Zusy.318017 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CMCVirus.Win32.Virut.1!O
ALYacGen:Variant.Zusy.318017
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Virut.d190ece4
Cybereasonmalicious.ffcae2
CyrenW32/S-d1a46ec6!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Patched-AFY [Trj]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.318017
MicroWorld-eScanGen:Variant.Zusy.318017
TencentWin32.Trojan.Pe.Ebqm
Ad-AwareGen:Variant.Zusy.318017
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Gen
BitDefenderThetaGen:NN.ZexaF.34170.xq0@a08Y9Mii
VIPREVirus.Win32.Virut.ce.6 (v)
TrendMicroPE_VIRUX.Q-1
McAfee-GW-EditionBehavesLike.Win32.Virut.fh
FireEyeGeneric.mg.8d30c2dffcae235c
EmsisoftGen:Variant.Zusy.318017 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen
Antiy-AVLVirus/Win32.Virut.ce
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D4DA41
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Zusy.318017
TACHYONTrojan/W32.PornoBlocker.381952
Acronissuspicious
MAXmalware (ai score=83)
MalwarebytesSality.Virus.FileInfector.DDS
PandaGeneric Suspicious
TrendMicro-HouseCallPE_VIRUX.Q-1
IkarusVirus.Win32.Virut
FortinetW32/Generic.AC.2D0!tr
AVGWin32:Patched-AFY [Trj]
Paloaltogeneric.ml

How to remove Zusy.318017 (B)?

Zusy.318017 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment