Malware

Should I remove “Zusy.397342”?

Malware Removal

The Zusy.397342 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.397342 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.397342?


File Info:

crc32: 13FEEA4A
md5: e211576cbdb1d92070862efe33703447
name: E211576CBDB1D92070862EFE33703447.mlw
sha1: 1befd6962066db0f6a1ebbddd6c0b6b6391ef6f7
sha256: f1751a576879ffed0fed1eee73ab099833ef0c019c6307cab9919275927ba6b6
sha512: e95fa8c9af2daf4a38c3f1ead09f5e9d0c6a4754581c632cc0a64d7890102e19c6de175ca5166222b4db5d5da15da4e49828227283bc1a0489060dc4eb1abcf6
ssdeep: 12288:lq1zaytHkdB6KK/2v7YNZIeT76kASvukn/rML9zpteqDaGul9:lqVayP/2TYNhaliD4eqDaGM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.397342 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader41.4140
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.397342
K7GWRiskware ( 0040eff71 )
CyrenW32/Injector.NMSF-5611
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.EPXZ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Remcos.gen
BitDefenderTrojan.GenericKDZ.77003
MicroWorld-eScanTrojan.GenericKDZ.77003
Ad-AwareTrojan.GenericKDZ.77003
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZelphiCO.34058.6GW@a8ac75ii
TrendMicroTROJ_GEN.R06CC0PHC21
McAfee-GW-EditionBehavesLike.Win32.Gnamer.dh
FireEyeGeneric.mg.e211576cbdb1d920
EmsisoftTrojan.GenericKDZ.77003 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Injector.uzomt
MicrosoftTrojan:Script/Phonzy.C!ml
GridinsoftTrojan.Win32.Downloader.oa!s1
ZoneAlarmHEUR:Backdoor.Win32.Remcos.gen
GDataTrojan.GenericKDZ.77003
AhnLab-V3Trojan/Win.Generic.R436733
McAfeeFareit-FCVN!E211576CBDB1
MAXmalware (ai score=81)
VBA32TrojanDownloader.Agent
MalwarebytesBackdoor.Remcos
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CC0PHC21
IkarusTrojan.Inject
FortinetW32/GenKryptik.FIVH!tr
AVGWin32:MalwareX-gen [Trj]
Qihoo-360HEUR/QVM05.1.40C3.Malware.Gen

How to remove Zusy.397342?

Zusy.397342 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment