Malware

Zusy.352655 removal

Malware Removal

The Zusy.352655 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.352655 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.352655?


File Info:

crc32: 03F2B065
md5: 9000abec9a7876b7f8dfd65d279aff94
name: 9000ABEC9A7876B7F8DFD65D279AFF94.mlw
sha1: e94f35c1596d47e02cc254e45cee334c7728cf19
sha256: df36b956ac62bcd1c62b9fd05a29ec941d38cf71bc0d3686158d39d02a59af33
sha512: f6e95892a941e1dba102b9e31809b1cff4507fd475ad7dbc6f03832bc80a9c9280ca7e948d6a4d03e468898691d286699f7df0ce0c842bd345bf50a2b549349a
ssdeep: 6144:FsYRyCXBgoDhzoNKXzJ7BapCK5d3klRzULOnWyjLsPhAQzqOm34apZX:JRZgQhIKXzJ4pdd3klnnWosPhnzqN3
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: POWERSHELL
FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7600.16385
FileDescription: Windows PowerShell
OriginalFilename: PowerShell.EXE
Translation: 0x0409 0x04b0

Zusy.352655 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Midie.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.352655
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.45589
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaVirus:Win32/Virut.bbcc412a
Cybereasonmalicious.c9a787
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Evo-gen [Susp]
BitDefenderGen:Variant.Zusy.352655
MicroWorld-eScanGen:Variant.Zusy.352655
TencentWin32.Trojan.Pe.Hono
Ad-AwareGen:Variant.Zusy.352655
SophosMal/Generic-S
ComodoMalware@#32u87e8o698q4
BitDefenderThetaGen:NN.ZexaF.34170.Dq0@aiGQ3kpi
VIPREVirus.Win32.Virut.ce.6 (v)
TrendMicroPE_VIRUX.S-1
McAfee-GW-EditionBehavesLike.Win32.Virut.gh
FireEyeGeneric.mg.9000abec9a7876b7
EmsisoftGen:Variant.Zusy.352655 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen
Antiy-AVLTrojan/Generic.ASVirus.2F
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.352655
Acronissuspicious
McAfeeArtemis!9000ABEC9A78
MAXmalware (ai score=99)
TrendMicro-HouseCallPE_VIRUX.S-1
IkarusVirus.Win32.Virut
FortinetW32/CoinMiner.CE
AVGWin32:Evo-gen [Susp]
Paloaltogeneric.ml

How to remove Zusy.352655?

Zusy.352655 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment