Malware

Zusy.414446 (file analysis)

Malware Removal

The Zusy.414446 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.414446 virus can do?

  • Unconventionial language used in binary resources: Arabic (Oman)
  • Authenticode signature is invalid

How to determine Zusy.414446?


File Info:

name: 38E4993A52205F5460A6.mlw
path: /opt/CAPEv2/storage/binaries/65f3b68a1c194058c60a3fcdc289e47d469d4bb777b2e0491c36bc5fca061a87
crc32: B3C37021
md5: 38e4993a52205f5460a6de44b75a8086
sha1: cafabc610f78286003adbceb7c7e27ed6cf31b01
sha256: 65f3b68a1c194058c60a3fcdc289e47d469d4bb777b2e0491c36bc5fca061a87
sha512: 873f7066991818fc5ec6992d2fce0610da788722357055564361f6013ddf0f7bc7fb40ccd590b43b5f068f24412509126a24c945b4b80892e0d6ce24db3a6d44
ssdeep: 6144:orJWdzrBg8LXVeZ5YBREaxtAznnNKaiNuIYlcF0:6AFg8LXe5YBqaxUiNuIY2
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1E7346C35B350F476E4B20436A59D83F6A8296D30375184FBB3D26F29AA702D2D734B27
sha3_384: b3a9e08effc6d4d4c7420d531f568ebfdc00822d51ef3381ea8c4e81f911628fb36cc115027bdb0ee46307391ff55997
ep_bytes: e859060000e974feffffcccccccccccc
timestamp: 2022-02-02 13:32:02

Version Info:

CompanyName: SpaceWeb
FileDescription: SpaceWeb
FileVersion: 4.14150.1.59
InternalName: SpaceWeb.exe
LegalCopyright: Copyright (C) 2022
OriginalFilename: SpaceWeb.exe
ProductName: SpaceWeb
ProductVersion: 1.2.1.52
Translation: 0x0400 0x04b0

Zusy.414446 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Zapchast.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.414446
FireEyeGen:Variant.Zusy.414446
CAT-QuickHealTrojan.Zapchast
McAfeeRDN/Generic Downloader.x
CylanceUnsafe
ZillyaDownloader.Agent.Win32.461276
SangforTrojan.Win32.Zapchast.gen
K7AntiVirusTrojan-Downloader ( 0058de921 )
K7GWTrojan-Downloader ( 0058de921 )
CyrenW32/Zusy.JN.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.GCL
APEXMalicious
KasperskyHEUR:Trojan.Win32.Zapchast.gen
BitDefenderGen:Variant.Zusy.414446
AvastWin32:DropperX-gen [Drp]
Ad-AwareGen:Variant.Zusy.414446
EmsisoftGen:Variant.Zusy.414446 (B)
TrendMicroTROJ_GEN.R002C0PB922
McAfee-GW-EditionRDN/Generic Downloader.x
SophosMal/Generic-S
IkarusTrojan-Downloader.Win32.Agent
GDataGen:Variant.Zusy.414446
WebrootW32.Zapchast
AviraTR/Dldr.Agent.qmhgm
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Zapchast
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Zusy.D652EE
ViRobotTrojan.Win32.Z.Fragtor.231936
ZoneAlarmHEUR:Trojan.Win32.Zapchast.gen
MicrosoftTrojan:Win32/Mamson.A!ac
CynetMalicious (score: 100)
AhnLab-V3Dropper/Win.Generic.R467245
BitDefenderThetaGen:NN.ZexaF.34212.ou0@a4t8IEjO
ALYacGen:Variant.Zusy.414446
VBA32Trojan.Zapchast
MalwarebytesTrojan.Downloader
TrendMicro-HouseCallTROJ_GEN.R002C0PB922
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.DL.Agent!o4wRnnqtMo8
FortinetW32/Agent.GCL!tr.dldr
AVGWin32:DropperX-gen [Drp]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.414446?

Zusy.414446 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment