Malware

Zusy.401118 (B) malicious file

Malware Removal

The Zusy.401118 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.401118 (B) virus can do?

  • A process created a hidden window
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.401118 (B)?


File Info:

crc32: D40464D7
md5: 9b2f6be44e539ac5d83f67e625b19250
name: 9B2F6BE44E539AC5D83F67E625B19250.mlw
sha1: 109ba5b9b9d8c9e6a173ce2672f00d5373416b48
sha256: 097798527e285d8896d8099ec86d8e5105b0f135337efc8cd4e3e1e3ec6532e1
sha512: 3e366267675e3825ee6a07ade445f9076043dadf5a262b1f5545b4964f274f42326dcdf6e66fdda945df1e47a0ee48e961d36126a0abbb3d9dbc993c9d8e2e85
ssdeep: 48:6t++ZGWjJaqoTXqBbIciWzK1jnT1KerZv8B13aLlzUR:sZGmQqoTXcjwkv3aLlYR
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Zusy.401118 (B) also known as:

K7AntiVirusTrojan ( 005883fd1 )
LionicTrojan.Multi.Generic.4!c
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.401118
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
AlibabaTrojan:Win32/Bsymem.2b145ec5
K7GWTrojan ( 005883fd1 )
Cybereasonmalicious.44e539
CyrenW32/Nitol.AO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.ADMO
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Bsymem.aduu
BitDefenderGen:Variant.Zusy.401118
MicroWorld-eScanGen:Variant.Zusy.401118
TencentWin32.Trojan.Zusy.Htmd
Ad-AwareGen:Variant.Zusy.401118
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34266.aqW@amCCMvai
TrendMicroTROJ_GEN.R002C0PK421
McAfee-GW-EditionGenericRXQB-TQ!9B2F6BE44E53
FireEyeGen:Variant.Zusy.401118
EmsisoftGen:Variant.Zusy.401118 (B)
AviraTR/Agent.oflcc
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D61EDE
GDataGen:Variant.Zusy.401118
AhnLab-V3Trojan/Win.Generic.R440300
McAfeeGenericRXQB-TQ!9B2F6BE44E53
MAXmalware (ai score=82)
VBA32BScope.Trojan.Nitol
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PK421
RisingTrojan.Generic@ML.87 (RDML:z+ts3lm6b+kwZMBCNnzZJg)
YandexTrojan.Agent!yGmq2coH6pk
IkarusTrojan.Win32.Agent
FortinetW32/Tiny.NFR!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Zusy.401118 (B)?

Zusy.401118 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment