Malware

Zusy.323564 removal instruction

Malware Removal

The Zusy.323564 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.323564 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Zusy.323564?


File Info:

name: 31E4B10819B36989F9E6.mlw
path: /opt/CAPEv2/storage/binaries/5b70c629563038f111c2329963cc2023a8cc6e19fb77f7fa6d857f6773c8388d
crc32: 835F0120
md5: 31e4b10819b36989f9e6853a79d5bd45
sha1: cd66494a6dbb99d2cf5ebb7dc8bf9782fb76e702
sha256: 5b70c629563038f111c2329963cc2023a8cc6e19fb77f7fa6d857f6773c8388d
sha512: 123c0dbb7d81bac55c957c4b64a21284d50320d50ba94a8c418d9eb3b1d55ab8fab48b25feeedf3257f3d8bda3536b27b704f3bd57d37ee0280547f64d0f81da
ssdeep: 3072:iQvSWBur9v7gGMDpg/dHucxCTbuV70cqp:iQvHGv7mOtucxCTU
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T120E35A2EE68288F6D292023485F0D334A9FB7E201F231BAB19D5595CCDFA3931D26757
sha3_384: 665de42adb01b4404a1fe2940aa1fc7d42dc5185dedf0b13d233f1bf3cec46993d7efd6bb69b97e3ca186d971d8ecdda
ep_bytes: 558bec83c4c0b84cb64100e8bcd0feff
timestamp: 2020-08-22 17:46:08

Version Info:

FileDescription: hha
FileVersion: 1.0.0.0
ProgramID: com.embarcadero.hha
ProductName: hha
ProductVersion: 1.0.0.0
Translation: 0x0409 0x04e4

Zusy.323564 also known as:

MicroWorld-eScanGen:Variant.Zusy.323564
FireEyeGen:Variant.Zusy.323564
SkyhighGeneric Trojan.oe
McAfeeGeneric Trojan.oe
MalwarebytesInject.Exploit.Shellcode.DDS
VIPREGen:Variant.Zusy.323564
SangforTrojan.Win32.Injector.V0el
K7AntiVirusTrojan ( 00570f911 )
AlibabaTrojan:Win32/Injector.e0096133
K7GWTrojan ( 00570f911 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Injector.ENOO
TrendMicro-HouseCallTROJ_GEN.R002C0DBK24
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Agentb.kanp
BitDefenderGen:Variant.Zusy.323564
NANO-AntivirusTrojan.Win32.Inject.hzpuqf
TencentMalware.Win32.Gencirc.117d95e9
EmsisoftGen:Variant.Zusy.323564 (B)
F-SecureTrojan.TR/Injector.cgqup
DrWebTrojan.Inject4.47705
ZillyaTrojan.Agent.Win32.1474551
TrendMicroTROJ_GEN.R002C0DBK24
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
MAXmalware (ai score=100)
GDataGen:Variant.Zusy.323564
JiangminTrojan.Agentb.hsc
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Injector.cgqup
VaristW32/Injector.DLYA-3056
Antiy-AVLTrojan/Win32.Injector
KingsoftWin32.Troj.Unknown.a
ArcabitTrojan.Zusy.D4EFEC
ViRobotTrojan.Win32.S.Agent.146944.LK
ZoneAlarmTrojan.Win32.Agentb.kanp
MicrosoftTrojan:Win32/Injector!MSR
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.Agent.C4207171
ALYacTrojan.Agent.Injector.Gen
VBA32Trojan.Agentb
Cylanceunsafe
PandaTrj/CI.A
RisingTrojan.Injector!8.C4 (TFE:5:AiXKBy6bZkD)
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
alibabacloudMalware

How to remove Zusy.323564?

Zusy.323564 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment