Malware

Zusy.405892 removal guide

Malware Removal

The Zusy.405892 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.405892 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.405892?


File Info:

crc32: E20CEC02
md5: 4080e8c6bab6d20d315f2a59ffd63cce
name: 4080E8C6BAB6D20D315F2A59FFD63CCE.mlw
sha1: 556b360043cbb9d37a529f0b4c7ce421f74de77b
sha256: f6b0e0e7347f9108da99441a6b0f7dbcce451aea62213dcf266c015c1e293e19
sha512: 7b769399adedfc4949a1173bd6942192ca60f291eb0a89457efe8dbe4c900d9936dfce73c1dc62f0f6529cab588e22818c96f2d87c951a8045327f7e95f887af
ssdeep: 24576:4FkPOv7PuznB8sAnAIX5S/uhdY+ZopdL0uIaGIWszJ7x7iwE:478+hrKdL0uQxW3ir
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4f5cx8005x7248x6743x6240x6709 x8bf7x5c0ax91cdx5e76x4f7fx7528x6b63x7248
FileVersion: 1.0.0.0
Comments: x672cx7a0bx5e8fx4f7fx7528x6613x8bedx8a00x7f16x5199(http://www.dywt.com.cn)
ProductName: x591ax7ebfx7a0bDL
ProductVersion: 1.0.0.0
FileDescription: x6613x8bedx8a00x7a0bx5e8f
Translation: 0x0804 0x04b0

Zusy.405892 also known as:

K7AntiVirusTrojan ( 005246d51 )
Elasticmalicious (high confidence)
ClamAVWin.Malware.Gotango-7000352-0
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderGen:Variant.Zusy.405892
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.6bab6d
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Zusy.405892
Ad-AwareGen:Variant.Zusy.405892
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34266.qr0@a0r!ZUob
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGeneric.mg.4080e8c6bab6d20d
EmsisoftGen:Variant.Zusy.405892 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.PSE.12FI8JT
Acronissuspicious
VBA32BScope.Trojan.Tiggre
MAXmalware (ai score=84)
MalwarebytesTrojan.MalPack.FlyStudio
RisingMalware.Heuristic!ET#96% (RDMK:cmRtazoaHIeYvTxnSk0BgnFtOfSG)
IkarusPUA.BlackMoon

How to remove Zusy.405892?

Zusy.405892 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment