Malware

How to remove “Zusy.405314 (B)”?

Malware Removal

The Zusy.405314 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.405314 (B) virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.405314 (B)?


File Info:

name: 1284CA8473884FAB3333.mlw
path: /opt/CAPEv2/storage/binaries/09f451261ec9f8ad414a1b0edf386eef57a3f807c79290416ece4a568f28af34
crc32: C1BE51A3
md5: 1284ca8473884fab3333d7e5ed5d4ac0
sha1: 7961d52fbd835e0e7e5069549575d179b3407e95
sha256: 09f451261ec9f8ad414a1b0edf386eef57a3f807c79290416ece4a568f28af34
sha512: d0b9468869d25772491e0304010932143cbde0c90407b56ab50f5a36963a147122c4f87ee196a138c540481b82e0a69af1af8697d682e98a2aac0d92169e400c
ssdeep: 98304:oEmxo9zUJKzZsCRijksmEFgWVBqvq3BIkwWUTV:X6o9zUJK1sCYYcKD8IknUTV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A2F51277F084EEC8FE8AC5F5C6A7D549478846704CED2449246A88C1CFF0267B76FA68
sha3_384: 1708d3e5ee3095ddb2bf53c35e2579dcf6349ba73acf4f339271828109f83d8299954f653e8842c928caa0d722e189f1
ep_bytes: 558d6c249881ec0c02000056e9080e00
timestamp: 2021-11-22 17:13:23

Version Info:

0: [No Data]

Zusy.405314 (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.PackedENT.124
MicroWorld-eScanGen:Variant.Zusy.405314
FireEyeGeneric.mg.1284ca8473884fab
CAT-QuickHealTrojan.Wacatac.S15862760
ALYacGen:Variant.Zusy.405314
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3626497
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056cc351 )
K7GWTrojan ( 0056cc351 )
Cybereasonmalicious.473884
BitDefenderThetaAI:Packer.9B432B2B1E
CyrenW32/S-0cb2f1a4!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GOGM
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.405314
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.Zusy.405314
EmsisoftGen:Variant.Zusy.405314 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
SophosML/PE-A + Troj/AGent-BFHO
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Zusy.405314
AviraTR/Crypt.XPACK.Gen3
Antiy-AVLTrojan/Generic.ASBOL.C639
ArcabitTrojan.Zusy.D62F42
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R346633
McAfeeGenericRXIP-YP!1284CA847388
MAXmalware (ai score=81)
VBA32BScope.Trojan.PackedENT
MalwarebytesTrojan.Crypt.Generic
RisingTrojan.Kryptik!1.BBF5 (CLASSIC)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.GOGM!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Zusy.405314 (B)?

Zusy.405314 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment