Malware

Zusy.406059 (file analysis)

Malware Removal

The Zusy.406059 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.406059 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
mas.to

How to determine Zusy.406059?


File Info:

crc32: 839303FE
md5: 7a5be55928093bb11949f083e2ef5491
name: 7A5BE55928093BB11949F083E2EF5491.mlw
sha1: 10d7edef9051ae56054259340584e46c0ef33544
sha256: 56ca26a0c3fffc5e5eb575f1255e849fa18504281bd1e6ba48adcc74704de627
sha512: 92a0abbb31c21b2134ee869bd62e1d5c1b97825450c3ec95d00d9936d1544c12aa02f2dccadcf0b9cf32dfd96b40acce3ceff0f129f42bc0201d207835938f5d
ssdeep: 24576:NolUbh+Kx1QTnKCXawZZ1zrZ/zNypSvo1SjVFsKICyWXqVWgH0Wy9bvFGNY83Hg:NUUbxEuo2pSLFSVWyoDV83HgZV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.406059 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.31412
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (W)
CyrenW32/DelfInject.EN.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EPYR
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Injuke.gen
BitDefenderGen:Variant.Zusy.406059
MicroWorld-eScanGen:Variant.Zusy.406059
Ad-AwareGen:Variant.Zusy.406059
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.7a5be55928093bb1
EmsisoftGen:Variant.Strictor.265113 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Zusy.406059
McAfeeGenericRXAA-AA!7A5BE5592809
MAXmalware (ai score=80)
MalwarebytesSpyware.Arkei
RisingTrojan.Kryptik!1.D9CB (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EQGY!tr
AVGWin32:Trojan-gen

How to remove Zusy.406059?

Zusy.406059 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment