Malware

Zusy.433776 removal

Malware Removal

The Zusy.433776 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.433776 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.433776?


File Info:

name: 2E12FC3872A109322C16.mlw
path: /opt/CAPEv2/storage/binaries/b2eb16ac9c3b570fce31bb5a74981ac7c2b6b83bdd9de46c23232863cdc1b33e
crc32: 10B79C24
md5: 2e12fc3872a109322c162584ed15c86a
sha1: 8cc0871be0ccd10038be16c067934e36bbfaacd2
sha256: b2eb16ac9c3b570fce31bb5a74981ac7c2b6b83bdd9de46c23232863cdc1b33e
sha512: dff1b1ec74079c5477b475f095f9d0f04daf5cca413dfa532b4bc9c00b9b1eac74f9d06a187354382a533290271e55172ebf1999136593506aafddeed7569f5c
ssdeep: 3072:Xw8dGvQ89wErNHbl7XZ8fyzkaLiDQ2jqout:Xw8dGvJ51b18ciMPoS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T144044C5EFBCA5FABE6160536CDEE9310472DC108634BD3DB1F29913C2E273099B86648
sha3_384: 79ddfa8ec88b4db500c20a3563267ef793b65b59347c26a894d2625c8715c59f497190dedf7c60dceab09e3e152518cb
ep_bytes: 60be15d048008dbeeb3ff7ffc78730f0
timestamp: 2016-01-12 00:22:45

Version Info:

0: [No Data]

Zusy.433776 also known as:

MicroWorld-eScanGen:Variant.Zusy.433776
FireEyeGeneric.mg.2e12fc3872a10932
ALYacGen:Variant.Zusy.433776
CylanceUnsafe
VIPREGen:Variant.Zusy.433776
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaGen:NN.ZexaF.34606.lmW@ay9sCXn
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
BitDefenderGen:Variant.Zusy.433776
AvastWin32:Evo-gen [Trj]
Ad-AwareGen:Variant.Zusy.433776
EmsisoftGen:Variant.Zusy.433776 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminemalicious.moderate.ml.score
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.50E6
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.433776
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.BitCoinMiner.R238395
Acronissuspicious
McAfeeArtemis!2E12FC3872A1
MAXmalware (ai score=80)
MalwarebytesMalware.AI.4149641960
RisingTrojan.Generic@AI.96 (RDML:sBVCVhKp88yiPgwX1uXLqQ)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.872a10

How to remove Zusy.433776?

Zusy.433776 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment