Malware

Zusy.411889 (B) information

Malware Removal

The Zusy.411889 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.411889 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.411889 (B)?


File Info:

name: A602249EC37F179A49BC.mlw
path: /opt/CAPEv2/storage/binaries/533523ba418f7da907d060f2e97bd7330ae358698577f2c93bc76832e55ae01a
crc32: 0E1D3BAE
md5: a602249ec37f179a49bc7440e15ff3a0
sha1: fa5061d0eeddc4bd1d34d9a4669ef2721409d610
sha256: 533523ba418f7da907d060f2e97bd7330ae358698577f2c93bc76832e55ae01a
sha512: bf793e618815d255f7950164652f79e6dcfd3961d8f0e9b65324cdb10b65ecacaf51b19839426e44d9aa07a89d6cdcbc698f2c964aded9d6f2b89ebeb5838615
ssdeep: 384:l5NQnDHpehN/vj3sEiSZPNXjedRjPjmRohvlnwWFXmnQ3KXmQoPCgb:lXgjwB6SZPNTedRnmRoVlnwWF2jm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T153034C2B7CC5C8A6D8AA12700DC0C35639B7F6384EA24357B5ED175F98BD1908D2B3E5
sha3_384: 5ddf7798e9e096ab897ee30d563f92f8beb3e9aeffc348889bc2570e63c87df686d62a427ebfe908356bc8258aa8e95a
ep_bytes: 60be00e040008dbe0030ffff5783cdff
timestamp: 2006-10-03 02:22:57

Version Info:

0: [No Data]

Zusy.411889 (B) also known as:

LionicWorm.Win32.Luder.lGDS
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
McAfeeArtemis!A602249EC37F
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Zusy.411889
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0040eff71 )
AlibabaWorm:Win32/Sfone.742f8439
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/new-malware!Maximus
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Dropper.Smalltrojan-9807963-0
KasperskyVHO:Trojan-Dropper.Win32.Demp.gen
BitDefenderGen:Variant.Zusy.411889
MicroWorld-eScanGen:Variant.Zusy.411889
AvastWin32:DropperX-gen [Drp]
EmsisoftGen:Variant.Zusy.411889 (B)
F-SecureTrojan.TR/Crypt.ULPM.Gen
ZillyaDropper.Demp.Win32.2936
TrendMicroTROJ_GEN.R002C0DER23
McAfee-GW-EditionBehavesLike.Win32.Generic.nt
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.a602249ec37f179a
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.411889
JiangminTrojanDropper.Demp.bov
AviraTR/Crypt.ULPM.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Wacatac
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Zusy.D648F1
ViRobotTrojan.Win.Z.Zusy.38912.LN
ZoneAlarmVHO:Trojan-Dropper.Win32.Demp.gen
MicrosoftWorm:Win32/Sfone
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R335834
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36250.cmW@aqyrQnb
ALYacGen:Variant.Zusy.411889
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DER23
RisingWorm.Sfone!8.1B7 (CLOUD)
YandexTrojan.Agent!IIQWr6RSplE
IkarusWorm.Win32.Sfone
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.ec37f1
DeepInstinctMALICIOUS

How to remove Zusy.411889 (B)?

Zusy.411889 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment