Malware

How to remove “Zusy.326297”?

Malware Removal

The Zusy.326297 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.326297 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.326297?


File Info:

crc32: 67B3E199
md5: bd945b8cbd4fbfda1ae79cbba79e331b
name: BD945B8CBD4FBFDA1AE79CBBA79E331B.mlw
sha1: 0d837e3acbdd0927b78b772efa5091147aa68d65
sha256: 9b8c2847229f503f75e66b863716c491710ab256728ab9cb625ed5ea62cd8ce8
sha512: b4c3b10a7f261541261e99a9a97643b4dc9c254367ccecf5e4c12f3a18edfc6d244d707b404f534f86e86f7d4fec239225bc5fb520d454bd92efca81a9447d6b
ssdeep: 3072:TJfeXMTCCzWgcnVugAtmJrsc+zQ2lINf1UWcR/:4XsVynVEurGsPNNUP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.326297 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005224381 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4738
CynetMalicious (score: 100)
CAT-QuickHealRansom.Cerber.A4
ALYacGen:Variant.Zusy.326297
CylanceUnsafe
ZillyaTrojan.SelfDel.Win32.53638
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Cerber.c72d294a
K7GWTrojan ( 005224381 )
Cybereasonmalicious.cbd4fb
BaiduWin32.Trojan.Kryptik.alb
CyrenW32/Cerber.A2.gen!Eldorado
SymantecPacked.Generic.459
ESET-NOD32Win32/Filecoder.Cerber.B
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.326297
NANO-AntivirusTrojan.Win32.Encoder.emukjb
ViRobotTrojan.Win32.Cerber.276126
MicroWorld-eScanGen:Variant.Zusy.326297
TencentMalware.Win32.Gencirc.10b58881
Ad-AwareGen:Variant.Zusy.326297
SophosML/PE-A + Mal/Cerber-AK
ComodoTrojWare.Win32.Kryptik.FBWM@6gt9t1
BitDefenderThetaGen:NN.ZexaF.34722.qqW@aSRPMgei
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.SMFD
McAfee-GW-EditionBehavesLike.Win32.Generic.dm
FireEyeGeneric.mg.bd945b8cbd4fbfda
EmsisoftGen:Variant.Zusy.326297 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Zerber.hh
AviraTR/Agent.gxy
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.1905E44
MicrosoftRansom:Win32/Cerber
ArcabitTrojan.Zusy.D4FA99
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Zusy.326297
AhnLab-V3Win-Trojan/Cerber.Gen
Acronissuspicious
McAfeeRansomware-GCQ!BD945B8CBD4F
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Cerber
MalwarebytesMalware.AI.3086743581
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CERBER.SMFD
RisingTrojan.Kryptik!1.AF0E (CLASSIC)
YandexTrojan.Filecoder!T9rByIl302A
IkarusWin32.Karagany
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Dridex.IZC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Zusy.326297?

Zusy.326297 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment