Malware

Zusy.380428 (file analysis)

Malware Removal

The Zusy.380428 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.380428 virus can do?

  • Authenticode signature is invalid

How to determine Zusy.380428?


File Info:

name: ADF48FEA45460BB89963.mlw
path: /opt/CAPEv2/storage/binaries/2cda208aeca493613edd063f5c1b66a0ca6e1081a07c1df547025e615ba106ad
crc32: C06D90CF
md5: adf48fea45460bb89963280dadad29ff
sha1: 78e378d78a82f93e4b2564eaf142b9f94bae43ff
sha256: 2cda208aeca493613edd063f5c1b66a0ca6e1081a07c1df547025e615ba106ad
sha512: 330359a65687367676eab05f3f6063525c00eab1b16fbed4544223c35fe4a6d4b30adf4a7dbe4f562701c2c3a85812814f0b9d81e0b3d49d1cb5dd5d78942052
ssdeep: 49152:qDaYm9Fe9U1c6UeSNMXao+5yQnuBB/9R36zJW+yAHitvJjb:qDnEe9u9LUMKo+5yEJW+/Ctv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19095D021B6D191F1E1A201B069787B6F4E3DBE741B3F86CBB3C8291D4A306D05A3675B
sha3_384: 4b3f1bd481711797d1d461552f79fb0d0137c1bfc853119484ecd7881c10a1f41641062ecb8f14f204c10b7e2667d66c
ep_bytes: e850070000e97afeffff558bec6a00ff
timestamp: 2021-11-27 21:58:51

Version Info:

0: [No Data]

Zusy.380428 also known as:

LionicTrojan.Win32.Zusy.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.380428
FireEyeGeneric.mg.adf48fea45460bb8
McAfeeArtemis!ADF48FEA4546
K7AntiVirusUnwanted-Program ( 00568e2f1 )
K7GWUnwanted-Program ( 00568e2f1 )
BitDefenderThetaGen:NN.ZexaF.34062.6vW@aKw@gSni
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GameHack.DIE potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CKS21
AvastFileRepMalware
BitDefenderGen:Variant.Zusy.380428
Ad-AwareGen:Variant.Zusy.380428
EmsisoftGen:Variant.Zusy.380428 (B)
VIPRELooksLike.Win32.Crowti.b (v)
McAfee-GW-EditionBehavesLike.Win32.Injector.th
SophosMal/Behav-027
eGambitUnsafe.AI_Score_100%
AviraTR/Downloader.Gen2
GridinsoftRansom.Win32.Sabsik.sa
GDataGen:Variant.Zusy.380428
CynetMalicious (score: 100)
Acronissuspicious
MAXmalware (ai score=82)
APEXMalicious
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/GameHack
AVGFileRepMalware

How to remove Zusy.380428?

Zusy.380428 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment