Malware

Zusy.374787 removal

Malware Removal

The Zusy.374787 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.374787 virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.374787?


File Info:

name: 351AF020D869D3F8796A.mlw
path: /opt/CAPEv2/storage/binaries/a143caeebbbc7faec8f2182368325eb3725142c6cf3c48644957beb1e867adf6
crc32: 2901888C
md5: 351af020d869d3f8796a85ffcb0c973c
sha1: 57537da680c4ff14d37d73c2cb6bf4b5df29fd5d
sha256: a143caeebbbc7faec8f2182368325eb3725142c6cf3c48644957beb1e867adf6
sha512: 8258ae3ad7da59e95180816b0d24f3faede923718caa893d8ad2037b931c528ae565f00234e1b7754607953a4eb1aacd2254c329cbab7277dd38fc365c1c743b
ssdeep: 384:UDthodL62+oD8/Pjuy+LZnL3zuHKbm2FJk+IVTgn41QQtsK4yFI:UJhodL62+oD8XjaJLiHx2FK+IVEu4yF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C7D23A596E718A67DA022472D626C610BF7DBD532E244A3B324CBB7E7F30750887C25E
sha3_384: b124c3ff1c041f8d6f2b26e20772fb3a94ca0fa39f71be63bb33f73bec00da4c56cfa5dd30dd92e0dd3529403ad7bab6
ep_bytes: 6a00ff15c8814000a300704000ff15a8
timestamp: 2017-05-25 01:38:49

Version Info:

CompanyName: addhaloka
FileDescription: Revo Uninstaller Pro Portable 3.x patch
FileVersion: 3.0.0.0
LegalCopyright: © 2017. No rights reserved.
ProductVersion: 3.0.0.0
Translation: 0x0409 0x04b0

Zusy.374787 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.374787
FireEyeGen:Variant.Zusy.374787
McAfeeArtemis!351AF020D869
CylanceUnsafe
ZillyaTool.Patcher.Win32.23432
SangforTrojan.Win32.Crypt.XPACK
BitDefenderThetaGen:NN.ZexaCO.34114.bu0@aqmA9rni
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Patcher.DO potentially unsafe
TrendMicro-HouseCallHKTL_PATCHER
BitDefenderGen:Variant.Zusy.374787
SUPERAntiSpywareHack.Tool/Gen-Patcher
Ad-AwareGen:Variant.Zusy.374787
ComodoMalware@#1qift7nctw8hy
VIPRETrojan.Win32.Generic!BT
TrendMicroHKTL_PATCHER
McAfee-GW-EditionBehavesLike.Win32.Dropper.mh
EmsisoftGen:Variant.Zusy.374787 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Zusy.374787
AviraTR/Crypt.XPACK.Gen3
MAXmalware (ai score=100)
MicrosoftTrojan:Win32/Occamy.CA1
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.Generic.C2673944
Acronissuspicious
ALYacGen:Variant.Zusy.374787
MalwarebytesMachineLearning/Anomalous.100%
RisingTrojan.Generic@ML.98 (RDMK:IDfRSstF1El97QzWPN3bVA)
IkarusTrojan.Crypt
FortinetRiskware/Patcher
WebrootW32.Malware.Gen
PandaTrj/GdSda.A

How to remove Zusy.374787?

Zusy.374787 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment