Malware

Zusy.360116 (B) removal tips

Malware Removal

The Zusy.360116 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.360116 (B) virus can do?

  • Presents an Authenticode digital signature
  • Loads a driver
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file

How to determine Zusy.360116 (B)?


File Info:

crc32: 09FA81C8
md5: c27d7527d3f650d4cf7b6353adf550cc
name: C27D7527D3F650D4CF7B6353ADF550CC.mlw
sha1: f77213631c08c13fd1715ca3844eb653ac6fc26b
sha256: 2dbff57912795ed3890f08cc1bb0f437318e06645edf89b22674ea87d088c972
sha512: d71b823255c9d61d23309c2831f4e2c5e82b28fbdfd82d755bfa43a7a931fc48837105f36f6852511005f5decfcae9ae7ac99dc1ed0b493dbe824abb0bca25ea
ssdeep: 24576:eWYJJKNaqTIGtPD3DPPsPi9zD2hJ7YDDNwXekz:eWYJkTBtLjUPXP7YSX5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.360116 (B) also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agent.a!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.61828
MicroWorld-eScanGen:Variant.Zusy.360116
ALYacGen:Variant.Zusy.360116
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Rovnix.6b2cfbe8
K7AntiVirusTrojan ( 0053cd791 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rovnix.AT
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Downloader.Win32.Agent.gen
BitDefenderGen:Variant.Zusy.360116
TencentWin32.Trojan-downloader.Agent.Swun
Ad-AwareGen:Variant.Zusy.360116
SophosMal/Generic-S
BitDefenderThetaAI:Packer.8978EAD020
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.c27d7527d3f650d4
EmsisoftGen:Variant.Zusy.360116 (B)
JiangminTrojan.Bingoml.aek
WebrootW32.Trojan.Gen
AviraTR/Rovnix.yhtwh
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.34699DF
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftTrojan.Heur!.00014021
GDataGen:Variant.Zusy.360116
AhnLab-V3Malware/Win32.Generic.C2534047
McAfeeArtemis!C27D7527D3F6
MAXmalware (ai score=100)
VBA32BScope.Trojan.Agent
MalwarebytesTrojan.Dropper
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CHI21
RisingRootkit.Agent!1.BF1F (CLASSIC)
IkarusTrojan.Win32.Rovnix
FortinetW32/Generic.AP.171C2F2!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Rovnix.GgIASakA

How to remove Zusy.360116 (B)?

Zusy.360116 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment