Malware

Zusy.382679 information

Malware Removal

The Zusy.382679 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.382679 virus can do?

  • Presents an Authenticode digital signature
  • Network anomalies occured during the analysis.
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Generates some ICMP traffic

How to determine Zusy.382679?


File Info:

crc32: 188A90C9
md5: 870d7b02486d944657fdc01b3519ef50
name: 870D7B02486D944657FDC01B3519EF50.mlw
sha1: a738609d6f84f142ae72c432698c9a3c187aa43d
sha256: 1e51b219b914df76a4111d5896053e96ecc9901a572b4a87f22b3f6952e4ccbf
sha512: 27a5d81316a2fa0e979c47010b80380b622940b0f24a43e4cf827ba8186c40f1e3eee5f94e9123ee4df510b8509664590d5d408dc277fa94186c5e8a5a2a6f46
ssdeep: 49152:3ZzrfhFzSTxmQZA0wTXPsDDsPGn4J1TeMVwKFMoDC0IOQ13luG:JzrfSTcSoPGnfMtMAXm3Z
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: NETFXRepair.exe
FileVersion: 14.0.1055.1
ProductName: NET Components 4.5 free installer
ProductVersion: 14.0.1055.1
FileDescription: NET Components 4.5 Setup
OriginalFilename: NETFXRepair.exe
Translation: 0x0409 0x04b0

Zusy.382679 also known as:

K7AntiVirusTrojan ( 0053cb111 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3723
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Ekstak.S3560696
ALYacGen:Variant.Zusy.382679
CylanceUnsafe
ZillyaTrojan.Ekstak.Win32.11520
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:Win32/Katusha.2d017ea7
K7GWTrojan ( 0053cb111 )
Cybereasonmalicious.2486d9
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GKYF
APEXMalicious
AvastWin32:AdwareSig [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.382679
NANO-AntivirusTrojan.Win32.InstallCube.fhyyyi
MicroWorld-eScanGen:Variant.Zusy.382679
TencentMalware.Win32.Gencirc.10b6e02d
Ad-AwareGen:Variant.Zusy.382679
SophosGeneric PUA KH (PUA)
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.Us1@aG87iLai
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPacked-FME!870D7B02486D
FireEyeGeneric.mg.870d7b02486d9446
EmsisoftApplication.FileTour (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.skb
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2819C97
MicrosoftPUADlManager:Win32/InstallCube
ArcabitTrojan.Zusy.D5D6D7
GDataGen:Variant.Zusy.382679
AhnLab-V3PUP/Win32.ICLoader.R237871
Acronissuspicious
McAfeePacked-FME!870D7B02486D
MAXmalware (ai score=100)
VBA32BScope.Trojan.InstallCube
MalwarebytesAdware.ICLoader.Generic
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!f5pmGtRxZ9g
IkarusPUA.FileTour
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:AdwareSig [Adw]
Paloaltogeneric.ml

How to remove Zusy.382679?

Zusy.382679 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment