Malware

Should I remove “Zusy.359094”?

Malware Removal

The Zusy.359094 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.359094 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Zusy.359094?


File Info:

crc32: F3A4B2D5
md5: 6e26b6a67500e8fbaec06c23af279b07
name: 6E26B6A67500E8FBAEC06C23AF279B07.mlw
sha1: 318beb94fc3cb27f076c82befdb0b32c2cde0687
sha256: f94d103cb843cbf6b551e19494389d84fbea7ee20b4cb146478d591b6bd412fd
sha512: c619992bee2222da515e87c611e0c35664b9962789187e4bfeb7ef0e3062bc3c6a399ed66cda9c3eaad44a2cbdb91576732d24f9cd231c81a193781c12c37cb3
ssdeep: 3072:MVaYmiLp+AO2e0qHDs+/Vy+29S9b+WWbyTOn5rnJRsMiQF0Vd9EkuejapPs:ymIYAO2eWvX9jbR53RFg+ejaF
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.359094 also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Emotet.1069
MicroWorld-eScanGen:Variant.Zusy.359094
FireEyeGeneric.mg.6e26b6a67500e8fb
Qihoo-360Generic/Trojan.e9f
McAfeeEmotet-FRR!6E26B6A67500
CylanceUnsafe
AegisLabTrojan.Win32.Bulz.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Zusy.359094
K7GWTrojan ( 005756961 )
K7AntiVirusTrojan ( 005756961 )
BitDefenderThetaGen:NN.ZedlaF.34700.nu4@aGOY4Lei
CyrenW32/Emotet.AZU.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Banker.Win32.Emotet.gen
AlibabaTrojan:Win32/EmotetCrypt.8693b1be
RisingTrojan.Kryptik!8.8 (TFE:5:CvDkayn11DR)
Ad-AwareGen:Variant.Zusy.359094
EmsisoftTrojan.Emotet (A)
ComodoMalware@#3e3lxsl9c2scs
F-SecureTrojan.TR/Crypt.Agent.azsfy
McAfee-GW-EditionBehavesLike.Win32.CryptDoma.dc
SophosMal/Generic-S + Troj/Emotet-CVD
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Banker.Emotet.pyj
AviraTR/Crypt.Agent.azsfy
Antiy-AVLTrojan[Banker]/Win32.Emotet
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftTrojan:Win32/EmotetCrypt.ARJ!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Zusy.D57AB6
ZoneAlarmHEUR:Trojan-Banker.Win32.Emotet.gen
GDataGen:Variant.Zusy.359094
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.359094
MAXmalware (ai score=81)
VBA32Trojan.Emotet
MalwarebytesTrojan.MalPack.TRE
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HILX
TrendMicro-HouseCallTROJ_GEN.R002H09LU20
TencentWin32.Trojan-banker.Emotet.Wptm
IkarusTrojan-Banker.Emotet
FortinetW32/Kryptik.HILX!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]

How to remove Zusy.359094?

Zusy.359094 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment