Malware

Zusy.380748 removal

Malware Removal

The Zusy.380748 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.380748 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

How to determine Zusy.380748?


File Info:

crc32: 2433F0FB
md5: c55271d4cc58f99323fd9ae3daa51434
name: C55271D4CC58F99323FD9AE3DAA51434.mlw
sha1: 661fa95f98d31d3bf888fe8c34d56abc4ed153b8
sha256: 6fce504ef6254ee62a7c8cf0da53883913a0e2ce7290e3a00c676902999659e1
sha512: 4df3fb1245d64213b7ff659b35f6965beb22e68077c804878a6f46332e662e4233e61af18628bd29385f72957f1bec5f21305dde555484662ac7a1b0a11fdad8
ssdeep: 6144:NVrSBoxbwWlK6la286EjFp79u2WCJiWuBqXOoAO4e8EmMHC:NVr4oxdlzaD69WuBq1V6MHC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: STUB.exe
FileVersion: 1.0.0.1
CompanyName: GBE cOmp
ProductName: IE-p
ProductVersion: 1.0.0.1
FileDescription: Intellectual privacy
OriginalFilename: STUB.exe
Translation: 0x0419 0x04b0

Zusy.380748 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.Morphine.1
ClamAVWin.Malware.Ulises-9787519-0
ALYacGen:Variant.Zusy.380748
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7GWTrojan ( 00565d3b1 )
K7AntiVirusTrojan ( 00565d3b1 )
CyrenW32/Injector.AKT.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.ENSH
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Inject.vho
BitDefenderGen:Variant.Zusy.380748
NANO-AntivirusTrojan.Win32.Morphine.hjsaoo
MicroWorld-eScanGen:Variant.Zusy.380748
Ad-AwareGen:Variant.Zusy.380748
BitDefenderThetaGen:NN.ZexaF.34236.ru0@aWGYzylk
McAfee-GW-EditionGenericRXLK-XL!C55271D4CC58
FireEyeGeneric.mg.c55271d4cc58f993
EmsisoftGen:Variant.Zusy.380748 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Inject.bdiy
AviraHEUR/AGEN.1138134
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Zusy.D5CF4C
ZoneAlarmHEUR:Trojan.Win32.Inject.vho
GDataGen:Variant.Zusy.380748
AhnLab-V3Malware/Win32.Generic.C4069010
McAfeeGenericRXLK-XL!C55271D4CC58
MAXmalware (ai score=84)
VBA32Trojan.Convagent
MalwarebytesTrojan.Injector
RisingTrojan.Generic@ML.98 (RDMK:T5q9MBjGFza7/Yyrda54ZQ)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.82199810.susgen
FortinetW32/Ulises.AA6F!tr
AVGWin32:PWSX-gen [Trj]

How to remove Zusy.380748?

Zusy.380748 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment