Malware

Zusy.425581 removal guide

Malware Removal

The Zusy.425581 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.425581 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.425581?


File Info:

name: D91CB8171B2FE54B63F5.mlw
path: /opt/CAPEv2/storage/binaries/2ba95275288d6b7f1ee779b1cb89ec63583cfc1f262b2d322d60a4826b5a4ab4
crc32: 7FF350CE
md5: d91cb8171b2fe54b63f588c7076c57ff
sha1: af1b6bd5fea0606cdbad3cefb9b35e764a399345
sha256: 2ba95275288d6b7f1ee779b1cb89ec63583cfc1f262b2d322d60a4826b5a4ab4
sha512: 7867190371b3c7ad61db4d52703c7f328abc576a46d885ebd94973ea3425dbefe777c1609cfd5667b54a2ecf0c769530557790587dcb40c517d0ef33c9c7180b
ssdeep: 1536:YGncui6Bdlkd6KSYzB79kfqW/CvH5mbdrATaWl+0/UQQMW3o5+p:YvuiOKSUfodr58DZW3o5+p
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9D328117240C036E76907300969DAE54D69AC391AA5F08FF3B87E3A6D712C3AA7735F
sha3_384: 0bce9b9ea3b04c011b673208c49b003d95369fc2c772812e375ee18c82f65a644db977f3f3cf485e7826c17812d4241b
ep_bytes: e8314f0000e989feffff8bff558bec8b
timestamp: 2014-01-30 01:23:46

Version Info:

0: [No Data]

Zusy.425581 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.GenericCryptor.tqJq
MicroWorld-eScanGen:Variant.Zusy.425581
FireEyeGeneric.mg.d91cb8171b2fe54b
CAT-QuickHealTrojan.Beaugrit.17908
ALYacGen:Variant.Zusy.425581
MalwarebytesMalware.Heuristic.1001
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 005946341 )
K7GWTrojan ( 005946341 )
Cybereasonmalicious.5fea06
BitDefenderThetaGen:NN.ZexaF.36196.imW@au54HCni
CyrenW32/ABRisk.NXWS-0804
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Urelas.BQ
APEXMalicious
ClamAVWin.Malware.Urelas-6717394-0
KasperskyUDS:Backdoor.Win32.Plite
BitDefenderGen:Variant.Zusy.425581
AvastWin32:Kryptik-NJO [Trj]
TencentWin32.Trojan.Agen.Swhl
EmsisoftGen:Variant.Zusy.425581 (B)
BaiduWin32.Trojan.Urelas.a
F-SecureHeuristic.HEUR/AGEN.1317424
VIPREGen:Variant.Zusy.425581
TrendMicroTROJ_GEN.R002C0DEK23
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
SophosMal/Generic-S
IkarusTrojan.Win32.Beaugrit
GDataGen:Variant.Zusy.425581
GoogleDetected
AviraHEUR/AGEN.1317424
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Urelas
XcitiumTrojWare.Win32.Urelas.SH@5674sp
ArcabitTrojan.Zusy.D67E6D
ZoneAlarmUDS:Backdoor.Win32.Plite
MicrosoftTrojan:Win32/Urelas.AA
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.Plite.R96616
McAfeeBackDoor-FBQP!D91CB8171B2F
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DEK23
RisingTrojan.Urelas!1.BE13 (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Urelas.AE!tr
AVGWin32:Kryptik-NJO [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Zusy.425581?

Zusy.425581 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment