Malware

What is “Zusy.412568”?

Malware Removal

The Zusy.412568 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.412568 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Zusy.412568?


File Info:

name: A6C01B081EED142C1843.mlw
path: /opt/CAPEv2/storage/binaries/bfd00ee2b7dc7cdfad5e9488dc193b9f6cf8c5f8ebecb85cd65f9d215cb94630
crc32: A96D7A6F
md5: a6c01b081eed142c1843356c26470305
sha1: 6314a0de9a6f3327ff6552e2c9a1c2eb3d0a7d5f
sha256: bfd00ee2b7dc7cdfad5e9488dc193b9f6cf8c5f8ebecb85cd65f9d215cb94630
sha512: 3b33d794d523adccafff665ddb9ed9a6b55f6149190b5dcb9850cffe030f936eda753921b025b9ed3953e61cc875081286e9607286cd84a485651b8bc227aecf
ssdeep: 384:YzvlkXqfTthJtLgwrTjFXa/N/B7NT29Y:qfTth3gwrNXi7I9
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15C420743F9404A73CF9941B9107788A9C5BFB6701F90ABA3BBD4A9060E755E0ED2B05F
sha3_384: 0eb28d3f8f4e26be0975af86f349338bda167b3f4f297ec33a1a967d2e30ae5279e91244d11abfaf84a35728d09893a9
ep_bytes: e8ff030000e974feffff558bec6a00ff
timestamp: 2022-01-29 11:53:38

Version Info:

0: [No Data]

Zusy.412568 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.412568
McAfeeGenericRXAA-AA!A6C01B081EED
CylanceUnsafe
BitDefenderGen:Variant.Zusy.412568
ArcabitTrojan.Zusy.D64B98
CyrenW32/Heuristic-217!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.FWZ
APEXMalicious
ClamAVWin.Malware.Zusy-9891938-0
KasperskyVHO:Trojan.Win32.Convagent.gen
RisingMalware.Heuristic!ET#79% (RDMK:cmRtazqQPzqpLR/4tV9E9VW2ORRe)
Ad-AwareGen:Variant.Zusy.412568
EmsisoftGen:Variant.Zusy.412568 (B)
TrendMicroMal_DLDER
FireEyeGeneric.mg.a6c01b081eed142c
IkarusTrojan.Win32.Swrort
JiangminTrojan.Cobalt.xw
AviraHEUR/AGEN.1144043
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Zusy.412568
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Dlder.R425274
ALYacGen:Variant.Zusy.412568
MAXmalware (ai score=83)
VBA32BScope.Trojan.NanoBot
MalwarebytesTrojan.Downloader
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_DLDER
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]

How to remove Zusy.412568?

Zusy.412568 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment