Malware

Should I remove “Zusy.394634”?

Malware Removal

The Zusy.394634 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.394634 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.394634?


File Info:

crc32: 1D6371E9
md5: 0fcc784f9400be0d78104a0043ee4479
name: 0FCC784F9400BE0D78104A0043EE4479.mlw
sha1: 65cac3bdb71487d6e14480ade6397347289e047b
sha256: 864b531c5f5a397b3fd2a8aa91c83f956d93300db9c986bfa7ae4744d7cb732f
sha512: b32a5475f7ec76dc88201383616e712d867757de39525ac5cda21536c5144e82fb3fe4b08f5024678823e8e1ca7bd8ffea0cbbeab8845636adb6e11e1fd1c975
ssdeep: 12288:a1SrPE0bpFJ1P3JOV4NijdKqyfdIJWV4Ko1Mv/OW5d5QQRSsx7/Ssdpk6dzsSU4:a1AT1VP4Dd2dcuSImW5fVSI764zsSU4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.394634 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Inject4.14638
CynetMalicious (score: 100)
ALYacGen:Variant.Jacard.228360
Cybereasonmalicious.db7148
CyrenW32/Fareit.KX.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EPUS
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Backdoor.Win32.Remcos.gen
BitDefenderGen:Variant.Zusy.394634
MicroWorld-eScanGen:Variant.Zusy.394634
Ad-AwareGen:Variant.Zusy.394634
SophosML/PE-A
BitDefenderThetaGen:NN.ZelphiF.34050.9GX@a0IktGoi
McAfee-GW-EditionBehavesLike.Win32.Fareit.dh
FireEyeGeneric.mg.0fcc784f9400be0d
EmsisoftGen:Variant.Zusy.394634 (B)
SentinelOneStatic AI – Suspicious PE
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Tnega.BIP!MTB
ZoneAlarmHEUR:Backdoor.Win32.Remcos.gen
GDataWin32.Trojan.Agent.IFIAIU
AhnLab-V3Trojan/Win.Generic.C4561306
McAfeeArtemis!0FCC784F9400
MAXmalware (ai score=88)
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.EKLE!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Remcos.HgIASY4A

How to remove Zusy.394634?

Zusy.394634 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment