Malware

Zusy.403305 removal tips

Malware Removal

The Zusy.403305 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.403305 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Zusy.403305?


File Info:

crc32: 666F0FA8
md5: ab4a7cf68fb9003bbff900b2627f53f6
name: AB4A7CF68FB9003BBFF900B2627F53F6.mlw
sha1: 06167db35030e3d4b443568083ef7a0e6a4d7e2f
sha256: 6e4d9b5cdd63e5a92fd671e03a237b3544d3de33f1976dd33c318e6479ce30fa
sha512: 564911872cc95f79a2b67fc288a2d57de1987e7011bacf7af95a09fbba1691e550ac06e910f81307de93029e7c4f50558a8857bf8451336d044537266b5b457c
ssdeep: 98304:xEVOg8B6bwONI4s4ApkUQvF3gaHD0krf8:xEVOg8B6b9amlh3gmD0s0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Astonsoft Ltd.
FileVersion: 9.5.2.0
CompanyName: Astonsoft
ProductName: EssentialPIM
ProductVersion: 9.5.2.0
FileDescription: EssentialPIM
Translation: 0x0409 0x04e4

Zusy.403305 also known as:

K7AntiVirusTrojan ( 005607891 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.403305
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 005607891 )
Cybereasonmalicious.35030e
CyrenW32/Zusy.IX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HBFP
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Staser.gen
BitDefenderGen:Variant.Zusy.403305
MicroWorld-eScanGen:Variant.Zusy.403305
Ad-AwareGen:Variant.Zusy.403305
BitDefenderThetaGen:NN.ZexaF.34266.@B0@aq9o!XAk
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGen:Variant.Zusy.403305
EmsisoftGen:Variant.Zusy.403305 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D62769
ZoneAlarmHEUR:Trojan.Win32.Staser.gen
GDataWin32.Trojan.PSE.1IAKRUN
AhnLab-V3Trojan/Win.Generic.R445351
McAfeeGenericRXOV-UA!AB4A7CF68FB9
MAXmalware (ai score=84)
MalwarebytesAdware.Agent.SFP.Generic
RisingTrojan.Kryptik!1.AA55 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HATU!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Zusy.403305?

Zusy.403305 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment