Malware

What is “Zusy.365026”?

Malware Removal

The Zusy.365026 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.365026 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.365026?


File Info:

crc32: 31AD43AC
md5: 7f8a4c8701b980322cdb8a3f2b39e407
name: 7F8A4C8701B980322CDB8A3F2B39E407.mlw
sha1: 2affac3fb830552d51e56cb607c18d275fa0174d
sha256: 88abad5086e78139e02807090a2d80c2fb250f31b856bf94a5b95ac8ca268d41
sha512: ecfaad852a34e0eae1c27570d57fdf9a034de7aec9fadb6997aa5c6171657bddac6d5f99ec76fcb3e6aed414d5844ca6950384b4248b05fe4ff89b237996be97
ssdeep: 3072:QQoKUFYt5cqkh4cBDAt/NdMdZIpzGciszMe2oQYxeVHkeuQyZw:Zo9FYEqkyN4fOzX2oQkzeuNu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.365026 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Siggen11.60621
ALYacGen:Variant.Zusy.365026
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
CyrenW32/Kryptik.DED.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.ACGU
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyHEUR:Backdoor.Win32.Mokes.pef
BitDefenderGen:Variant.Zusy.365026
NANO-AntivirusTrojan.Win32.Mokes.ihpimy
MicroWorld-eScanGen:Variant.Zusy.365026
Ad-AwareGen:Variant.Zusy.365026
SophosGeneric ML PUA (PUA)
BitDefenderThetaAI:Packer.C8744A741F
McAfee-GW-EditionBehavesLike.Win32.BadFile.cm
FireEyeGeneric.mg.7f8a4c8701b98032
EmsisoftGen:Variant.Zusy.365026 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Mokes.ddd
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.310BD70
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmHEUR:Backdoor.Win32.Mokes.pef
GDataGen:Variant.Zusy.365026
AhnLab-V3Malware/Win.Generic.R374762
McAfeeArtemis!7F8A4C8701B9
MAXmalware (ai score=81)
VBA32BScope.Backdoor.Mokes
MalwarebytesTrojan.SmokeLoader.Generic
PandaTrj/Genetic.gen
RisingMalware.Heuristic!ET#83% (RDMK:cmRtazp/RIbRwMBgxmkofJjmMfxv)
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.ACGU!tr
AVGWin32:Trojan-gen

How to remove Zusy.365026?

Zusy.365026 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment