Malware

Zusy.324680 removal instruction

Malware Removal

The Zusy.324680 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.324680 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.324680?


File Info:

crc32: 058E0172
md5: 35257fe9fede29d89c853162c8f00ee7
name: 35257FE9FEDE29D89C853162C8F00EE7.mlw
sha1: 6856d915481f58b4dff85efdb7ab17ed460913ff
sha256: 99afa6da667c5ca9f5d3618ef972b1aacc867ac8281b9df3f61fb9865fe9f4ce
sha512: bc3758085f340275c270ba2f755a033fa923a80fd9e38fc353419942c6870e0ce653e685d3d8357727f0b1239f7bfa9242f8696c2a29aa1a5fd5eea53e3aaa40
ssdeep: 24576:L7YwgpLguX5GhmLcxp6sQMWMvC9t8GYiWdCMJ5Qxr/SGC/hR:L7U0usvM99i9iW0MbQxLS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2010
InternalName: LoginTools.exe
FileVersion: 1,0,0,0
CompanyName: 178x7f51x6e38x5de5x4f5cx5ba4
ProductName: x5546x4e1ax7a0bx5e8f
ProductVersion: 1, 0, 0, 0
FileDescription: x5546x4e1ax7a0bx5e8f
OriginalFilename: LoginTools.exe
Translation: 0x0804 0x03a8

Zusy.324680 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 005439d61 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Zusy.324680
CylanceUnsafe
ZillyaTool.GameTool.Win32.644
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanPSW:Win32/Generic.0f64d822
K7GWRiskware ( 005439d61 )
Cybereasonmalicious.9fede2
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/RiskWare.GameTool.S
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Zusy.324680
NANO-AntivirusRiskware.Win32.GameTool.hfrqan
MicroWorld-eScanGen:Variant.Zusy.324680
Ad-AwareGen:Variant.Zusy.324680
SophosMal/Generic-S
BitDefenderThetaAI:Packer.C6B1A80219
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DEA21
McAfee-GW-EditionBehavesLike.Win32.Dropper.tm
FireEyeGeneric.mg.35257fe9fede29d8
EmsisoftGen:Variant.Zusy.324680 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1103850
Antiy-AVLTrojan/Generic.ASMalwS.301B7DD
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftPWS:Win32/Lmir
ArcabitTrojan.Zusy.D4F448
AegisLabTrojan.Win32.Zusy.4!c
GDataGen:Variant.Zusy.324680
AhnLab-V3Unwanted/Win32.RL_GameHack.R367210
McAfeeGenericRXGA-BH!35257FE9FEDE
MAXmalware (ai score=87)
VBA32Trojan.SDP.27105
MalwarebytesRiskWare.GameTool
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DEA21
RisingMalware.Lmir!8.E96A (CLOUD)
YandexRiskWare.GameTool!rrjVYEWO9f8
IkarusTrojan-Spy.Lmir
FortinetW32/Lmir.BQT!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Zusy.324680?

Zusy.324680 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment