Malware

Zusy.352077 removal instruction

Malware Removal

The Zusy.352077 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.352077 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.352077?


File Info:

name: F4C962305862945164DA.mlw
path: /opt/CAPEv2/storage/binaries/413ae6fdad0908806011400f5e3b70e364c603ee279abb2d07da989508936d4d
crc32: D9ED6BF6
md5: f4c962305862945164dae623c3d201a2
sha1: 89ef155b8cd59c5141cf4bbfa4a1459e013776f5
sha256: 413ae6fdad0908806011400f5e3b70e364c603ee279abb2d07da989508936d4d
sha512: 981c776d7ab781b3a87fe9eeb396431abaf502012d30522165ba44f94400ac3075d7677a6a46a61947c43855a6e25366895add3502c84e6fd3c9500df762f2b8
ssdeep: 98304:rrnUM+BFm6lgRkeetkeM+rlQHKQ1nITXh8F:/UM+WUKos+XL+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C5E5122256510076E1E7793ACC3B6ED43C752F364AC1A8722CB8FDCD2B7A1E19932653
sha3_384: a8737d0970cd1f36f4fe7048d5ace62888671cc2c37b4a5036032636023c5092ad3a6d2a0bbe57ad71710be0ca475f3c
ep_bytes: 558bec6aff68c049640068a037640064
timestamp: 2020-11-27 03:36:27

Version Info:

CompanyName: IObit
FileDescription: Surfing Protection Update
FileVersion: 13.0.0.200
InternalName: SPUpdate
LegalCopyright: © IObit. All rights reserved.
LegalTrademarks: IObit
OriginalFilename: SPUpdate.exe
ProductName: Surfing Protection
ProductVersion: 13.0.0.0
Comments: Surfing Protection Update
Translation: 0x0409 0x04e4

Zusy.352077 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Midie.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.352077
FireEyeGeneric.mg.f4c9623058629451
CAT-QuickHealTrojan.WacatacPMF.S17275918
McAfeeGenericRXMW-JV!F4C962305862
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.2692939
SangforTrojan.Win32.Wacatac.D4
K7AntiVirusTrojan ( 00587de51 )
AlibabaTrojan:Win32/Kryptik.fc016f9c
K7GWTrojan ( 00587de51 )
Cybereasonmalicious.058629
CyrenW32/Kryptik.CKH.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.HINR
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Ekstak.aimzd
BitDefenderGen:Variant.Zusy.352077
NANO-AntivirusTrojan.Win32.Kryptik.idense
AvastWin32:AdwareX-gen [Adw]
Ad-AwareGen:Variant.Zusy.352077
SophosMal/Generic-R + Troj/AutoG-KL
DrWebTrojan.Zadved.1661
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
EmsisoftGen:Variant.Zusy.352077 (B)
IkarusTrojan.Win32.Crypt
WebrootW32.Malware.Gen
AviraPUA/VirtualDVM.BK
MAXmalware (ai score=87)
Antiy-AVLTrojan/Generic.ASMalwS.3105E53
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D55F4D
GDataGen:Variant.Zusy.352077
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.DownloadAssistant.C4248924
VBA32BScope.Trojan.Zadved
ALYacGen:Variant.Zusy.352077
MalwarebytesAdware.Agent.KHM.Generic
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.Kryptik!Y/oI5MRl9jo
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_89%
FortinetW32/Kryptik.GZFR!tr
AVGWin32:AdwareX-gen [Adw]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_60% (D)
MaxSecureTrojan.Malware.74148632.susgen

How to remove Zusy.352077?

Zusy.352077 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment