Malware

Zusy.401722 removal

Malware Removal

The Zusy.401722 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.401722 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Greek
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz

How to determine Zusy.401722?


File Info:

crc32: 589BCDD9
md5: 4ef9c9b9971a20f1a18e56dd4329d62c
name: 4EF9C9B9971A20F1A18E56DD4329D62C.mlw
sha1: c7b0daa9678f3c6a35d5d018ca41466ea497e45b
sha256: 135dfd26acc2ab044b4159e7e0da289e2c7835c4049100106a00ca7d232bddea
sha512: 5018345ee50e996c4dd00674d578a64e257716f77b4978ac3c0df986973c5b86834cc6a0d78ba5dde2d4d7904acd1273bb5e7e20939a71d71cc3b4adef47b198
ssdeep: 6144:tIl3f5on8R0CBtsabvbn0iRugpw8mI3R5y4MAIJ+CczfBsx2X/HSpu9SiWaKMVe:tk32q0CB5/wq6cBsxsPUmYa1B3js
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 1998
InternalName: Pizza
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: Pizza Application
ProductVersion: 1, 0, 0, 1
FileDescription: Pizza MFC Application
OriginalFilename: Pizza.EXE
Translation: 0x0409 0x04b0

Zusy.401722 also known as:

Elasticmalicious (high confidence)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderGen:Variant.Zusy.401722
ESET-NOD32a variant of Win32/GenKryptik.FLAA
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Trickpak.gen
MicroWorld-eScanGen:Variant.Zusy.401722
Ad-AwareTrojan.GenericKDZ.77781
SophosML/PE-A
FireEyeGeneric.mg.4ef9c9b9971a20f1
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Zusy.401722
McAfeeGenericRXQC-WP!4EF9C9B9971A
MAXmalware (ai score=80)
PandaTrj/GdSda.A
FortinetW32/GenKryptik.FLAA!tr

How to remove Zusy.401722?

Zusy.401722 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment