Malware

Zusy.357352 removal instruction

Malware Removal

The Zusy.357352 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.357352 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Zusy.357352?


File Info:

name: 152B9BFB99D373652540.mlw
path: /opt/CAPEv2/storage/binaries/0878f41e78f713895dfcf3f828b34c9f639f46dc6fb4f37dcbe07e6f9c116786
crc32: E0D9D06B
md5: 152b9bfb99d3736525409b54d9db0952
sha1: b95ac1c7b4e2bcc81d621af8dab1ad56cc83890c
sha256: 0878f41e78f713895dfcf3f828b34c9f639f46dc6fb4f37dcbe07e6f9c116786
sha512: cb3f252f987ad8f3c5dd96cb6f3f84216fcb605fbb43d7aed895d0dd3b0b64f6df44cb76e1a17e772512afa3e78526e9c1dde63d6f1aa731fa87548d8248ee3e
ssdeep: 384:IfpINF5P0o/Y8YQQgmaRP3FL0yTcwPh+RBuD2pgS:eaPx0o/1NmQP19TlhsBuDe
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T10A0318127290C033F8EA01FFDAFD8CB5893CDC641B6AA1E355D745A92B511D7243ABCA
sha3_384: a76e372a4ee54377ee19009af8ca44079418e3040f9ef6df30618a310cff08fa9bbd884cbe48e439bb48c51ca85c0169
ep_bytes: e938110000e991400000e95e3b0000e9
timestamp: 2020-11-27 03:16:40

Version Info:

0: [No Data]

Zusy.357352 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Shelma.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.357352
FireEyeGeneric.mg.152b9bfb99d37365
CAT-QuickHealPUA.PresenokerPMF.S10080434
ALYacGen:Variant.Zusy.357352
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004943941 )
AlibabaTrojan:Win32/Shelma.9751a0b8
K7GWTrojan ( 004943941 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/S-4bc71bf6!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.ED
APEXMalicious
AvastWin32:ShikataGaNai-C [Trj]
ClamAVWin.Malware.Filerepmalware-9875145-0
KasperskyTrojan.Win32.Shelma.bbdd
BitDefenderGen:Variant.Zusy.357352
TencentWin32.Trojan.Shelma.Dvpz
EmsisoftGen:Variant.Zusy.357352 (B)
ZillyaTrojan.Shelma.Win32.7235
McAfee-GW-EditionBehavesLike.Win32.Generic.pt
SophosMal/Generic-S
Paloaltogeneric.ml
JiangminTrojan.Shelma.gqv
AviraTR/Rozena.jftoa
MicrosoftTrojan:Win32/Meterpreter.A
GDataGen:Variant.Zusy.357352
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R358296
McAfeeArtemis!152B9BFB99D3
MAXmalware (ai score=87)
VBA32BScope.Trojan.Wacatac
RisingTrojan.Rozena!8.6D (CLOUD)
YandexTrojan.GenAsa!ttpkeRjHfAs
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.110072867.susgen
FortinetW32/Rozena.AFO!tr
AVGWin32:ShikataGaNai-C [Trj]
Cybereasonmalicious.b99d37

How to remove Zusy.357352?

Zusy.357352 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment