Malware

How to remove “Zusy.400772”?

Malware Removal

The Zusy.400772 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.400772 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

nikolakigreate.live

How to determine Zusy.400772?


File Info:

crc32: 1C275B34
md5: 142c86ed200a746642ab346dde2f7aa2
name: 142C86ED200A746642AB346DDE2F7AA2.mlw
sha1: c2a77bcfbf45fd37be28acd0ed58c9f851816d0e
sha256: 853a3cd64aa1abe7c620f353b349a833c89752b4a7fdfdfe1d90d4e7f44eb935
sha512: 4556c8236e338fc7e5a867dd2532d9e865566e0d609354a17e22f8099d7a6980b7a59fe65b77ff5965547c02f2e789bf35e7f3a3261a1d0dd450c1445c5fa9c5
ssdeep: 49152:8/qrobEmveNDfa0xD5/NZRhlTWrlaEzJz+sjD:Ihb3eNDZxtNvTTWh+sv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: 2016 (c) ElcomSoft Co. Ltd. All rights reserved.
InternalName: elcom_devmgr.exe
FileVersion: 1, 7, 1635, 0
CompanyName: ElcomSoft Co. Ltd.
ProductName: Elcomsoft Device Manager
ProductVersion: 1, 7, 1635, 0
FileDescription: Elcomsoft Device Manager
OriginalFilename: elcom_devmgr.exe
Translation: 0x0000 0x04b0

Zusy.400772 also known as:

K7AntiVirusTrojan ( 005690671 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.400772
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 005690671 )
Cybereasonmalicious.fbf45f
CyrenW32/Kryptik.FGO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLIQ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Chrop.gen
BitDefenderGen:Variant.Zusy.400772
MicroWorld-eScanGen:Variant.Zusy.400772
Ad-AwareGen:Variant.Zusy.400772
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaCO.34266.iE0@aKowM4fi
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
FireEyeGeneric.mg.142c86ed200a7466
EmsisoftGen:Variant.Zusy.400772 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Sabsik.REA!MTB
ArcabitTrojan.Zusy.D61D84
GDataWin32.Trojan.PSE.13M60MZ
AhnLab-V3Adware/Win.Generic.R425898
McAfeeGenericRXQC-BH!142C86ED200A
MAXmalware (ai score=85)
MalwarebytesAdware.Agent.SFP.Generic
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA55 (CLASSIC)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.HLMN!tr
AVGWin32:CrypterX-gen [Trj]

How to remove Zusy.400772?

Zusy.400772 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment