Malware

Should I remove “Zusy.360689 (B)”?

Malware Removal

The Zusy.360689 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.360689 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

How to determine Zusy.360689 (B)?


File Info:

crc32: 12F2F202
md5: fe4207f1d1b4922e5dfb96188433ba37
name: FE4207F1D1B4922E5DFB96188433BA37.mlw
sha1: 5178b8d696b91cceb503e16ddcd74cdb8f92cf81
sha256: 3aaee634885463ee006330492554c7ee758dbe49613fe20bcd488a15e9963c2d
sha512: f2580b86af5acd2e1bc229ef52ac9396ffaf00dc62277f667d723873019cbcb4c0a89b0407743897e0d4a510b0ff116506808abceac76fdc5dffcd3ae9c47eb8
ssdeep: 12288:fnxShOZ4yNjjuAMJLvl+9ekoULIdDtJySFAAWmQ2CJbkfddRjxq4E3dCKfYR4i:fnxq8RjTMJcM/5ySFAAWmQXkfddhxp4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.0.0
CompanyName: BlueWind
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename:
Translation: 0x0804 0x03a8

Zusy.360689 (B) also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.360689
ALYacGen:Variant.Zusy.360689
MalwarebytesMalware.AI.3182057375
CrowdStrikewin/malicious_confidence_80% (W)
Cybereasonmalicious.1d1b49
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.BKE
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.360689
TencentWin32.Trojan.Banld.Efao
Ad-AwareGen:Variant.Zusy.360689
ComodoMalware@#3q6gfm7vsw6dr
BitDefenderThetaGen:NN.ZelphiF.34058.TG0@amWpkDpb
McAfee-GW-EditionBehavesLike.Win32.Dropper.bh
FireEyeGeneric.mg.fe4207f1d1b4922e
EmsisoftGen:Variant.Zusy.360689 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Special.752128
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.31A7B59
MicrosoftProgram:Win32/Wacapew.C!ml
GDataGen:Variant.Zusy.360689
AhnLab-V3Trojan/Win32.HDC.C667329
Acronissuspicious
McAfeeArtemis!FE4207F1D1B4
MAXmalware (ai score=86)
VBA32BScope.TrojanRansom.Crypmodadv
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_Banld-1
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/LockScreen.D64C!tr
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.Generic.HgIASaAA

How to remove Zusy.360689 (B)?

Zusy.360689 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment