Malware

Zusy.349982 (B) removal guide

Malware Removal

The Zusy.349982 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.349982 (B) virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.349982 (B)?


File Info:

crc32: 99E42E91
md5: 0df9c2742e6d9bc1cf51f44dce7d45a4
name: 0DF9C2742E6D9BC1CF51F44DCE7D45A4.mlw
sha1: b31fe28b7bbbed5d8ea45d194e7dfb946e9be078
sha256: ef1badcfca6caa3b884aeb54b4e61e63c29f690db810830e005c253403c0a4e3
sha512: 08aa99c67b34bb861d4a3bd6e06b83c1633d609d03db492534db2ca77571ca387e9f6e4b047bcb2005f48bab9727972680728dfdce3732c34f5a9bc524ca3de3
ssdeep: 1536:zOC0FvV4OgsX52ZtzBm7uW0vSUsghQevS3F17DntOuFqKRr0aF5frleQU3Elt:zwV4OgsYBmh04eq3F17J3Rr0gwQU3En
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Zusy.349982 (B) also known as:

BkavW32.MassiveMusicPM.Trojan
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop3.45645
ClamAVWin.Virus.Lockscreen-56
CAT-QuickHealTrojan.Ramnit.A3
ALYacGen:Variant.Zusy.349982
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 0038b1be1 )
K7AntiVirusTrojan ( 0038b1be1 )
BaiduWin32.Trojan.Pakes.a
CyrenW32/Bamital.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Ramnit.AY
APEXMalicious
AvastWin32:Ramnit-AN
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.PornoBlocker.anbz
BitDefenderGen:Variant.Zusy.349982
NANO-AntivirusTrojan.Win32.Pakes.erqhzd
ViRobotTrojan.Win32.A.PornoBlocker.206336.A
MicroWorld-eScanGen:Variant.Zusy.349982
Ad-AwareGen:Variant.Zusy.349982
SophosMal/Generic-S
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34058.imW@ayvxfGac
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.0df9c2742e6d9bc1
EmsisoftGen:Variant.Zusy.349982 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PornoBlocker.cbo
AviraTR/Krypt.lkfna
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASBOL.DCD
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Ramnit.A
ZoneAlarmTrojan-Ransom.Win32.PornoBlocker.anbz
GDataGen:Variant.Zusy.349982
AhnLab-V3Trojan/Win.PornoBlocker.C4577853
Acronissuspicious
McAfeeGeneric BackDoor.ya
MAXmalware (ai score=85)
MalwarebytesTrojan.Agent
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_BAMITAL_0000006.TOMA
RisingTrojan.Win32.Fednu.ueo (CLASSIC)
IkarusVirus.Win32.Ramnit
MaxSecureTrojan.Pakes.tyi
FortinetW32/Drooptroop.SMY!tr
AVGWin32:Ramnit-AN
Qihoo-360Worm.Win32.FakeFolder.BU

How to remove Zusy.349982 (B)?

Zusy.349982 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment