Malware

Should I remove “Zusy.396705”?

Malware Removal

The Zusy.396705 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.396705 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Sorbian
  • Anomalous binary characteristics

Related domains:

trick.matchoatmeal.icu
fuss.wavesfork.online

How to determine Zusy.396705?


File Info:

crc32: E947E655
md5: a634bfdb68bb1239466529948afdceb8
name: A634BFDB68BB1239466529948AFDCEB8.mlw
sha1: 91f46a32c47ab40325bf3144ae0b1c9f7178177c
sha256: 1a5c154a90bfe28d3bbe2473d4ee4928de7e471eca10398944f1185a2b1c69bb
sha512: eb13ae0098ade5c014b3752b9daff6aa8081c2573772d174cccfd7bbfb5fdcbae73c8368ab19c147c85e2db190ba34a00eb662fe3cad8fc0a18777a8f02c32d1
ssdeep: 24576:mbv36DIO50taFRbXoaolJvxvrYYRsNztPW5/otvO3cueGBJ3tDgSlEMbfa:mj36saXPwTrRsNkomh9Dzllja
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2000
InternalName: TAPIBrowser
FileVersion: 1, 0, 0, 1
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: TAPIBrowser Application
SpecialBuild:
ProductVersion: 1, 0, 0, 1
FileDescription: TAPIBrowser MFC Application
OriginalFilename: TAPIBrowser.EXE
Translation: 0x0409 0x04b0

Zusy.396705 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053f0f51 )
LionicTrojan.Win32.Zbot.lx9X
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.15370
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.396705
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.74611
SangforSuspicious.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.c89603ea
K7GWTrojan ( 0053f0f51 )
Cybereasonmalicious.b68bb1
CyrenW32/Kryptik.DID.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLRL
APEXMalicious
AvastWin32:Trojan-gen
Kasperskynot-a-virus:AdWare.Win32.StartSurf.ebtv
BitDefenderGen:Variant.Zusy.396705
NANO-AntivirusRiskware.Win32.StartSurf.fkjiav
MicroWorld-eScanGen:Variant.Zusy.396705
TencentMalware.Win32.Gencirc.10cd330f
Ad-AwareGen:Variant.Zusy.396705
SophosMal/Generic-S
ComodoApplication.Win32.Dlhelper.GL@81g4fd
BitDefenderThetaAI:Packer.33C2D1BB1F
McAfee-GW-EditionPacked-FKC!A634BFDB68BB
FireEyeGeneric.mg.a634bfdb68bb1239
EmsisoftGen:Variant.Zusy.396705 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.dcgq
AviraTR/Dropper.Gen2
eGambitUnsafe.AI_Score_77%
Antiy-AVLTrojan/Generic.ASMalwS.29696AF
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmnot-a-virus:AdWare.Win32.StartSurf.ebtv
GDataGen:Variant.Zusy.396705
AhnLab-V3PUP/Win32.Agent.R245424
Acronissuspicious
McAfeePacked-FKC!A634BFDB68BB
MAXmalware (ai score=81)
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.IStartSurf
PandaTrj/CI.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!XFaVAoaacq8
IkarusPUA.Dlhelper
FortinetW32/Kryptik.GIST!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Zusy.396705?

Zusy.396705 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment