Malware

Zusy.318058 malicious file

Malware Removal

The Zusy.318058 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.318058 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Operates on local firewall’s policies and settings

How to determine Zusy.318058?


File Info:

name: D9A7707849B50BFA1620.mlw
path: /opt/CAPEv2/storage/binaries/fc8b3bb6beeeabee1300b16709bf1042532337dc4887a5ce9ac5b86cf21b3660
crc32: 9F450CC3
md5: d9a7707849b50bfa1620b54120c64835
sha1: c0af28910642661dc6662c7dd8ce693f998b6244
sha256: fc8b3bb6beeeabee1300b16709bf1042532337dc4887a5ce9ac5b86cf21b3660
sha512: 2179e20204be3cea99dd5135cb48f26bce623b3c336208ad48a33f1f1a35bcd6cabc5a1b16e0e751e68a826362b1f4a0034d37b8c9cbb8faf13dd8b78c35dafb
ssdeep: 6144:pjFRiOcXH6XWD0w1tizmtnktLJ6znvxNcCI+1jDIlnJ9+1aTEPTnOK4JKElo:nRDc3yWDNU+YUznzNjElWaT07NQto
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12DA46D36B6F18436D1625AB8CC0BE798A829BD603D24EC4777D91F4C9F39391352B293
sha3_384: 5a377a116afc4a0a5e1a347b5f5319b8c13481c36b7efda90be670dbf262cf779d07b4746df20158006353d6947b44a5
ep_bytes: 558bec83c4e833c08945ec8945e8b8cc
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Zusy.318058 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.318058
FireEyeGeneric.mg.d9a7707849b50bfa
ALYacGen:Variant.Zusy.318058
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Lydra.Win32.804
CynetMalicious (score: 100)
K7AntiVirusTrojan ( 0054ffd11 )
K7GWTrojan ( 0054ffd11 )
Cybereasonmalicious.106426
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Lydra
APEXMalicious
ClamAVWin.Malware.Lydra-9982098-0
BitDefenderGen:Variant.Zusy.318058
NANO-AntivirusTrojan.Win32.Lydra.ckpik
TencentTrojan.Win32.Lydra.yq
SophosTroj/Lydra-Gen
F-SecureHeuristic.HEUR/AGEN.1330491
DrWebTrojan.WinSpy.88
VIPREGen:Variant.Zusy.318058
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
EmsisoftGen:Variant.Zusy.318058 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanSpy.Lydra.ux
AviraHEUR/AGEN.1330491
MAXmalware (ai score=89)
Antiy-AVLTrojan[Spy]/Win32.Lydra
XcitiumTrojWare.Win32.Trojan.Lydra.~N@40gv3z
ArcabitTrojan.Zusy.D4DA6A
ZoneAlarmTrojan-Spy.Win32.Lydra.he
GDataWin32.Trojan.PSE.1EJY54W
GoogleDetected
AhnLab-V3Trojan/Win.Lydra.R535773
Acronissuspicious
BitDefenderThetaAI:Packer.D5BCA72A19
Cylanceunsafe
RisingSpyware.Lydra!1.6608 (CLASSIC)
YandexTrojan.GenAsa!u4VgzDLrinI
IkarusTrojan.Win32.Delf
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Lydra.AF!tr
DeepInstinctMALICIOUS

How to remove Zusy.318058?

Zusy.318058 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment