Malware

What is “Zusy.433571 (B)”?

Malware Removal

The Zusy.433571 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.433571 (B) virus can do?

  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.433571 (B)?


File Info:

name: 26BA32424BBCEF0692E0.mlw
path: /opt/CAPEv2/storage/binaries/ab8f68f54f3c87665dead74d8dac438e0a17319e4ecd1e0f91c8e12c75f91c22
crc32: A4A73DFA
md5: 26ba32424bbcef0692e0615a01488ec5
sha1: 0b83a4652f47798d3c77cabdc23b91e14734b65c
sha256: ab8f68f54f3c87665dead74d8dac438e0a17319e4ecd1e0f91c8e12c75f91c22
sha512: 2f4659cfc17137ec50e8b98dad1c90861be1bc5a1623960715dbef94be5c07a11af7df19fb34a24a26b773fe33cf6a1f644e6875fc8b09a0a24b669737c8f985
ssdeep: 3072:6mrvx0FJn8FAX1eHi7bXnbNppseYcpvLC8ss6DkuLammXR:EFJn8FAskXBjscp+TsGaVR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B774299972C1F071C27B21B5087B820EB232BCF65C398206F199F6EE7C749495927F69
sha3_384: 3e84cbe95aeb9684174cdc17298a4f11c109f454ab68ecb7c7867643da1c95fa73b1e1f6dafc2edd9e35d2d129b601cf
ep_bytes: 60be004049008dbe00d0f6ff5783cdff
timestamp: 2014-11-05 16:18:05

Version Info:

0: [No Data]

Zusy.433571 (B) also known as:

Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.433571
FireEyeGeneric.mg.26ba32424bbcef06
McAfeeArtemis!26BA32424BBC
CylanceUnsafe
VIPREGen:Variant.Zusy.433571
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Malware.Softpulse-9956810-0
BitDefenderGen:Variant.Zusy.433571
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Zusy.433571
EmsisoftGen:Variant.Zusy.433571 (B)
McAfee-GW-EditionArtemis
Trapminesuspicious.low.ml.score
SophosGeneric ML PUA (PUA)
IkarusTrojan-Dropper.Agent
GDataGen:Variant.Zusy.433571
AviraHEUR/AGEN.1234318
Antiy-AVLTrojan/Generic.ASMalwS.724E
ArcabitTrojan.Zusy.D69DA3
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.RealProtect-LS.C5177552
BitDefenderThetaGen:NN.ZexaF.34582.vmW@aWF3yfIi
ALYacGen:Variant.Zusy.433571
MAXmalware (ai score=85)
MalwarebytesPUP.Optional.SoftPulse
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.185877145.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen
Cybereasonmalicious.52f477

How to remove Zusy.433571 (B)?

Zusy.433571 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment