Malware

About “Zusy.355315” infection

Malware Removal

The Zusy.355315 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.355315 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Performs some HTTP requests

Related domains:

phillifighters.cyou

How to determine Zusy.355315?


File Info:

crc32: 342C2508
md5: c90f7887975937351782122deac2ba2f
name: C90F7887975937351782122DEAC2BA2F.mlw
sha1: 540a89a98a26c9b42418839f8aea57aaa74ce79f
sha256: 31d8a3551ab27eb493d57b851f406952d7287dee0b2072270427dc5f797dac51
sha512: fde95a7c41cc66bc56847e7548851e84417fe119389539e14b1c1665840c680244b8b72282e4c3de0a77a73f4701c92d377c8d1b979d2803aca20487ee345976
ssdeep: 6144:Ku/1Yp5u6dkcyt4LsW/FO26dGbpM89q2huZurSD9c8uFzgkPAO0tvG:KkupA6+cyc2GbKJ2huZug9cP9JP6G
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Might lie Corporation. All rights reserved
InternalName: Roll Ice
FileVersion: 4.2.0.399
CompanyName: Might lie Corporation
ProductName: Might liexae Successhousexae
ProductVersion: 4.2.0.399
FileDescription: Might lie Successhouse
Port: TriangleMap
OriginalFilename: distant.dll
Translation: 0x0409 0x04b0

Zusy.355315 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.355315
FireEyeGen:Variant.Zusy.355315
ALYacTrojan.IcedID.gen
AegisLabTrojan.Win32.Agentb.4!c
SangforMalware
BitDefenderGen:Variant.Zusy.355315
K7GWTrojan ( 005747151 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.EYCS
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Agentb.gen
AlibabaTrojan:Win32/Kryptik.569be2a6
RisingTrojan.Generic@ML.81 (RDMK:ey50FLNTPOUPqiubFibrUA)
Ad-AwareGen:Variant.Zusy.355315
EmsisoftGen:Variant.Zusy.355315 (B)
F-SecureTrojan.TR/AD.PhotoDlder.cgljh
DrWebTrojan.IcedID.45
McAfee-GW-EditionRDN/IcedID
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
AviraTR/AD.PhotoDlder.cgljh
MAXmalware (ai score=84)
KingsoftWin32.Troj.Generic.a.(kcloud)
MicrosoftTrojan:Win32/Kryptik!MSR
ArcabitTrojan.Zusy.D56BF3
ZoneAlarmHEUR:Trojan.Win32.Agentb.gen
GDataGen:Variant.Zusy.355315
CynetMalicious (score: 100)
McAfeeRDN/IcedID
VBA32BScope.TrojanBanker.Gozi
MalwarebytesSpyware.PasswordStealer
FortinetW32/GenKryptik.EYCS!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM40.1.D37B.Malware.Gen

How to remove Zusy.355315?

Zusy.355315 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment