Malware

Zusy.405256 (B) removal guide

Malware Removal

The Zusy.405256 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.405256 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

interestourflash.info

How to determine Zusy.405256 (B)?


File Info:

crc32: 8E3A4692
md5: a8dc2095cde31d911cbba86b3eebb956
name: A8DC2095CDE31D911CBBA86B3EEBB956.mlw
sha1: 4aa8e40571975ee4549580faf3788533cbe1fbce
sha256: 48943fee8f76f484e1fd0d571e599e72a1d77663daf7090337e2cca9a7dbec69
sha512: 0902481cfac980b2829c137b2902cc29ec04a01003c98fcccb0367ccfc698dace65973e8b6ad19416ea3980b1090388a9fe7cf2515561013567c5d005ba44506
ssdeep: 24576:AmKoLyndQlOluK4Mteel30zsSq/xIS16b2+QJyu43PTmHmYKZiYryBFXtV2Hpxg:AusOE8weiEzxjiJmomY8iYryz9Qmh01
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2007-2016 Cerious Software Inc.
InternalName: ThumbsPriv
FileVersion: 10.1.0.4005
CompanyName: Cerious Software Inc.
Comments: Provides privileged (elevated) functions for ThumbsPlus
ProductName: ThumbsPlus
ProductVersion: 10.1.0.4005
FileDescription: ThumbsPlus priveleged utility
OriginalFilename: ThumbsPriv.exe
Translation: 0x0409 0x04b0

Zusy.405256 (B) also known as:

K7AntiVirusTrojan ( 005825821 )
LionicTrojan.Win32.Injuke.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.33007
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.405256
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 005825821 )
CyrenW32/Kryptik.FQL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLMN
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Injuke.gen
BitDefenderGen:Variant.Zusy.405256
MicroWorld-eScanGen:Variant.Zusy.405256
TencentWin32.Trojan.Zusy.Lplk
Ad-AwareGen:Variant.Zusy.405256
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34266.mE0@aKrcgNwO
McAfee-GW-EditionBehavesLike.Win32.Dropper.vc
FireEyeGeneric.mg.a8dc2095cde31d91
EmsisoftGen:Variant.Zusy.405256 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/AD.CrthRazy.idaxc
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Zusy.D62F08
ZoneAlarmHEUR:Trojan.Win32.Injuke.gen
GDataWin32.Trojan.PSE.XHSEGX
AhnLab-V3Adware/Win.Generic.R425898
McAfeeArtemis!A8DC2095CDE3
MAXmalware (ai score=87)
PandaTrj/CI.A
RisingTrojan.Kryptik!1.AA55 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HATU!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Zusy.405256 (B)?

Zusy.405256 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment