Malware

About “Zusy.413492” infection

Malware Removal

The Zusy.413492 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.413492 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.413492?


File Info:

name: D5305546718FD7E6AC10.mlw
path: /opt/CAPEv2/storage/binaries/ee2273940799a384d861cdee58f628aed0e684bf978280da34cabc1c178c4e7e
crc32: F3E93F8A
md5: d5305546718fd7e6ac10774783a641c8
sha1: f38af2de547a9c81989160923b2f43657228fe83
sha256: ee2273940799a384d861cdee58f628aed0e684bf978280da34cabc1c178c4e7e
sha512: 853f54c10654410c93caed22497fc9758d511380a0c751d8089ad80d970c033489b5b085b25b44e770995c42f8dfbb538cfd32e87c429223655bcaa0f81a6b48
ssdeep: 98304:tZbhH+wK3lJZOHnISblHZt+Z39KDDtWT8kz28K+QjTs/0BumkhfbmFv8Gdeo43Tu:tZbhi3Z65V2o38K+D/0BeSFvHA/u
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EC561213B500C0F6C5151A3211B65736EDB94F516A74CAA3B798FE1EEE3A341A33B70A
sha3_384: 844996e1e610760eb78e38cef659e72b898331c2aba4d6b77f4feb89d6ddfb3a33b00680cd7a276dd69df4a59d7fde38
ep_bytes: 558bec6aff68d8445f006894c44e0064
timestamp: 2022-01-05 14:36:23

Version Info:

Comments: 文件批量改名高手的软件安装包
CompanyName: 仙游县灵云软件开发有限公司
FileDescription: 文件批量改名高手V8.0 软件安装程序
FileVersion: 8,0,0,0
InternalName: 文件批量改名高手
LegalCopyright: 仙游县灵云软件开发有限公司 www.meimengsoft.com 版权所有
OriginalFilename: 文件批量改名高手.exe
ProductName: 文件批量改名高手
ProductVersion: V8.0
Translation: 0x0804 0x04b0

Zusy.413492 also known as:

MicroWorld-eScanGen:Variant.Zusy.413492
FireEyeGeneric.mg.d5305546718fd7e6
McAfeeGenericRXAA-AA!D5305546718F
CylanceUnsafe
ZillyaTrojan.Injuke.Win32.24143
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
BitDefenderGen:Variant.Zusy.413492
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_70% (W)
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
ClamAVWin.Malware.Trojanx-9951053-0
KasperskyUDS:Trojan.Win32.Generic
CynetMalicious (score: 100)
RisingTrojan.Tiggre!8.ED98 (C64:YzY0OuLDtzOBmvRY)
Ad-AwareGen:Variant.Zusy.413492
EmsisoftGen:Variant.Zusy.413492 (B)
ComodoTrojWare.Win32.TrojanDropper.Agent.HNMS@4xnjpy
DrWebTrojan.PWS.Wsgame.55705
VIPREGen:Variant.Zusy.413492
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:Trojan.Win32.Generic
GDataWin32.Application.PSE.1DNV50E
GoogleDetected
AhnLab-V3Malware/Win.Malware-gen.C4923295
VBA32BScope.Trojan.Dynamer
ALYacGen:Variant.Zusy.413492
MAXmalware (ai score=83)
MalwarebytesTrojan.MalPack.FlyStudio
TrendMicro-HouseCallTROJ_GEN.R03BH09IC22
IkarusTrojan.Tonmye
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/CoinMiner.BELF!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.6718fd
AvastWin32:TrojanX-gen [Trj]

How to remove Zusy.413492?

Zusy.413492 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment