Malware

Should I remove “Zusy.399233”?

Malware Removal

The Zusy.399233 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.399233 virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.399233?


File Info:

name: C6B32AC0E8AF9C65FE33.mlw
path: /opt/CAPEv2/storage/binaries/421f0d194084c889ab10a446d47e7f4a375baf28106884e1f28a4b9c805eb216
crc32: 1C3F2D79
md5: c6b32ac0e8af9c65fe33fdf41038f2e2
sha1: 946714bff07c19ed30ff29c56148b63cb08b1f46
sha256: 421f0d194084c889ab10a446d47e7f4a375baf28106884e1f28a4b9c805eb216
sha512: 10f5f1da067ab47f11c9023e14cdaefb8bb29cacbd1296d386470fcf1d0cbab924101fd88842c3c73fd8ddbaf4bf348af60b0854cc307307d04511250773d81b
ssdeep: 98304:fECi8CMOaCrKMCCTcT04H5to9OWRFC6ZIKWL:SgHCTcTJc9OWRFC6ZIbL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T101F52326FB3B53BEC952F4F612BE0DA5DE90D213616ECC653C09FC92489088B153ADD9
sha3_384: 3f4d394538421d4e3298d85f47c893c3d3b5ee1b6a5bc52c393065fba52c15cedfe6f242b66148d7ea32f612109ead4d
ep_bytes: 558d6c249881ec0c02000056e9e4e9ff
timestamp: 2022-07-01 17:28:53

Version Info:

0: [No Data]

Zusy.399233 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Zusy.399233
FireEyeGeneric.mg.c6b32ac0e8af9c65
CAT-QuickHealTrojan.Wacatac.S15862760
McAfeeGenericRXHI-ZQ!C6B32AC0E8AF
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0056cc351 )
BitDefenderGen:Variant.Zusy.399233
K7GWTrojan ( 0056cc351 )
CrowdStrikewin/malicious_confidence_70% (D)
ArcabitTrojan.Zusy.D61781
BitDefenderThetaGen:NN.ZexaF.34742.ytW@aWUURom
CyrenW32/Graftor.RC.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GOGM
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusVirus.Win32.Gen.ccmw
APEXMalicious
TencentTrojan.Win32.Ktyptik.zd
Ad-AwareGen:Variant.Zusy.399233
SophosML/PE-A + Troj/AGent-BFHO
DrWebTrojan.PackedENT.124
VIPREGen:Variant.Zusy.399233
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
EmsisoftGen:Variant.Zusy.399233 (B)
IkarusTrojan.Win32.Crypt
AviraTR/ATRAPS.Gen2
MicrosoftProgram:Win32/Wacapew.C!ml
GDataGen:Variant.Zusy.399233
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R346633
Acronissuspicious
VBA32BScope.Trojan.PackedENT
ALYacGen:Variant.Zusy.399233
MAXmalware (ai score=86)
RisingTrojan.Kryptik!1.BBF5 (CLASSIC)
FortinetW32/Razy.BSSG!tr
AVGWin32:Xpirat-B [Inf]
Cybereasonmalicious.0e8af9
AvastWin32:Xpirat-B [Inf]

How to remove Zusy.399233?

Zusy.399233 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment