Malware

Zusy.414446 (B) malicious file

Malware Removal

The Zusy.414446 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.414446 (B) virus can do?

  • Unconventionial language used in binary resources: Arabic (Oman)
  • Authenticode signature is invalid

How to determine Zusy.414446 (B)?


File Info:

name: FEA6500A463524B75CCE.mlw
path: /opt/CAPEv2/storage/binaries/c480f2ccedc308bd6534179cc095a58b09ba6f75580f05e4d205c12c395975b5
crc32: C412B19E
md5: fea6500a463524b75cceea126c4dc5a0
sha1: 5bf3fb4ee09954752c8172ea1401d7694ac2e9ad
sha256: c480f2ccedc308bd6534179cc095a58b09ba6f75580f05e4d205c12c395975b5
sha512: 50beaa8aa24e3864b77b4679fa6e98026349334563503b34f19420aa6bfb4ec2c93af9c775be8875644e45aecf5a54a0356bd144dc9f3b255dd24b54fd77f6d6
ssdeep: 6144:j7v4qPFg8LXVeZ5YBREaxtAznnNKaiNuIYBc6s:ntg8LXe5YBqaxUiNuIYq
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T171346B35B750F437E4B20436649D87F6A4296D30379188EBB3D26F29AA702D2DB34B17
sha3_384: 694b68964110c771a2f4acbd88772507360d4fd77b07ebcba5db92c99d2ef022f2eb6761c15899cf896bade8b0e5e187
ep_bytes: e859060000e974feffffcccccccccccc
timestamp: 2022-02-02 13:31:33

Version Info:

CompanyName: SpaceWeb
FileDescription: SpaceWeb
FileVersion: 4.14150.1.59
InternalName: SpaceWeb.exe
LegalCopyright: Copyright (C) 2022
OriginalFilename: SpaceWeb.exe
ProductName: SpaceWeb
ProductVersion: 1.2.1.52
Translation: 0x0400 0x04b0

Zusy.414446 (B) also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Zapchast.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.414446
FireEyeGen:Variant.Zusy.414446
ALYacGen:Variant.Zusy.414446
CylanceUnsafe
SangforTrojan.Win32.Zapchast.gen
K7AntiVirusTrojan-Downloader ( 0058de321 )
AlibabaTrojan:Win32/Zapchast.b63e8bfe
K7GWTrojan-Downloader ( 0058de321 )
BitDefenderThetaGen:NN.ZexaF.34212.ou0@aymCEjaO
CyrenW32/Zusy.JN.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.GCL
TrendMicro-HouseCallTROJ_GEN.R06CC0PBB22
AvastWin32:DropperX-gen [Drp]
KasperskyHEUR:Trojan.Win32.Zapchast.gen
BitDefenderGen:Variant.Zusy.414446
TencentWin32.Trojan-downloader.Agent.Ehhu
Ad-AwareGen:Variant.Zusy.414446
EmsisoftGen:Variant.Zusy.414446 (B)
TrendMicroTROJ_GEN.R06CC0PBB22
McAfee-GW-EditionRDN/Generic Downloader.x
SophosMal/Generic-S
GDataGen:Variant.Zusy.414446
AviraTR/Dldr.Agent.ulyrw
Antiy-AVLTrojan/Win32.Zapchast
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Zusy.D652EE
ViRobotTrojan.Win32.Z.Fragtor.231936.A
ZoneAlarmHEUR:Trojan.Win32.Zapchast.gen
MicrosoftTrojan:Win32/Mamson.A!ac
CynetMalicious (score: 100)
AhnLab-V3Dropper/Win.Generic.R467245
McAfeeRDN/Generic Downloader.x
MAXmalware (ai score=87)
VBA32Trojan.Zapchast
MalwarebytesTrojan.Downloader
APEXMalicious
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.DL.Agent!BmRQFR7Z7Fw
FortinetW32/Agent.GCL!tr.dldr
WebrootW32.Dropper.Gen
AVGWin32:DropperX-gen [Drp]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.414446 (B)?

Zusy.414446 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment