Malware

Should I remove “Zusy.326929”?

Malware Removal

The Zusy.326929 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.326929 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.326929?


File Info:

name: 35CA4481F986A915D11F.mlw
path: /opt/CAPEv2/storage/binaries/5bc16eca48364a8189597bdfc7c8660360a48b149acaa72a0e285c6c7421356e
crc32: EEBA1CAB
md5: 35ca4481f986a915d11f8098f05eaac9
sha1: 08af9d7b1a97a7307c54cc39fb6a7f56a075467a
sha256: 5bc16eca48364a8189597bdfc7c8660360a48b149acaa72a0e285c6c7421356e
sha512: de3ccd8a4c72d8d72037623ae9427db6887c4c26ce66b36dca870de40e799715916651ee5b3dd1aac263d3b8034dc59ef3e5aa3c57e45753922b0759b574bcf9
ssdeep: 12288:AxoWL2OZr1MMzQ1fAYjLLRMH1dSJGyuz/H2KQ+TCEZa09Wp06:AMTvGdSJGyE/fTCEw09t6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13FE402113ADF8A72E0678B7390B55BA24E2BFC650EE80AE73375255DCA312D132647D3
sha3_384: 07eb0b5581c4790290430a49f955a1d190a31740e16e1b5c8dfa6951f2ce5c5a33f1ef9ddc759144441fb74286c7640c
ep_bytes: e86d2d0000e97ffeffffcccccccccc57
timestamp: 2016-08-11 17:35:07

Version Info:

0: [No Data]

Zusy.326929 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Revizer.1218
MicroWorld-eScanGen:Variant.Zusy.326929
FireEyeGeneric.mg.35ca4481f986a915
CAT-QuickHealTrojan.Chapak.ZZ6
McAfeeAdware-Linkury
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.936730
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055dd191 )
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.1f986a
BitDefenderThetaGen:NN.ZexaF.34062.PuW@aifYa0g
CyrenW32/S-3fd285cd!Eldorado
SymantecTrojan.Gen
ESET-NOD32a variant of Win32/Kryptik.FEHU
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.326929
NANO-AntivirusTrojan.Win32.Kryptik.efzflg
AvastFileRepMalware
TencentMalware.Win32.Gencirc.10b10be1
Ad-AwareGen:Variant.Zusy.326929
SophosGeneric ML PUA (PUA)
ComodoApplication.Win32.Addrop.BB@6hgqfa
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
EmsisoftGen:Variant.Zusy.326929 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.326929
JiangminAdware.Agent.wvr
eGambitUnsafe.AI_Score_99%
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1A2AEED
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitTrojan.Zusy.D4FD11
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R193794
Acronissuspicious
VBA32Trojan.Revizer
ALYacGen:Variant.Zusy.326929
MAXmalware (ai score=84)
MalwarebytesPUP.Optional.Linkury.ACMB1
RisingTrojan.Generic@ML.99 (RDML:3XeYdHlzGKfdXVsjq1R7vw)
YandexTrojan.GenAsa!1F6mn0gK/xA
IkarusTrojan-Dropper.Win32.Addrop
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AP.1456E!tr
WebrootW32.Malware.Gen
AVGFileRepMalware
PandaTrj/Genetic.gen

How to remove Zusy.326929?

Zusy.326929 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment