Malware

Zusy.433776 (B) removal

Malware Removal

The Zusy.433776 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.433776 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.433776 (B)?


File Info:

name: 058260CCBB22477F515A.mlw
path: /opt/CAPEv2/storage/binaries/45b1905549bbc37fd71c22fe2f2416f0d1df437c0c1b4f821fe53c672ac18836
crc32: 5ECB7D85
md5: 058260ccbb22477f515a34be0aed50d8
sha1: 3ffb2d65f04c46f31180e2486833ffc3779855aa
sha256: 45b1905549bbc37fd71c22fe2f2416f0d1df437c0c1b4f821fe53c672ac18836
sha512: e9a2247019980373129c7aa6b8365f2d93a40c34c6af5606ed4bf8350dce15a3edd765376f2c5081d0863eb1478be15a2df6e639ccb05167b3bc2a1ec157a973
ssdeep: 3072:Ww8dGvQ89wErNHbl7XZ8fyzkaLiDQ2jqout:Ww8dGvJ51b18ciMPoS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5044C5EFBCA5FABE6160536CDEE9310472DC108634BD3DB1F29913C2E673099B86588
sha3_384: 7f0fb1cb5f93cef1090e4334132b1630ff2101841c17b1ca3c76206bc2b0180579bf174ce21e75425550c0fff055091c
ep_bytes: 60be15d048008dbeeb3ff7ffc78730f0
timestamp: 2016-01-12 00:22:45

Version Info:

0: [No Data]

Zusy.433776 (B) also known as:

Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.433776
FireEyeGeneric.mg.058260ccbb22477f
ALYacGen:Variant.Zusy.433776
CylanceUnsafe
SangforVirus.Win32.Save.a
Cybereasonmalicious.cbb224
BitDefenderThetaGen:NN.ZexaF.34754.lmW@ay9sCXn
CyrenW32/S-fe3fea0d!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Zusy.433776
AvastWin32:Evo-gen [Trj]
Ad-AwareGen:Variant.Zusy.433776
EmsisoftGen:Variant.Zusy.433776 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
F-SecureTrojan.TR/Crypt.ULPM.Gen
VIPREGen:Variant.Zusy.433776
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminemalicious.moderate.ml.score
SophosML/PE-A
IkarusTrojan.Crypt
GDataGen:Variant.Zusy.433776
GoogleDetected
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.50E6
ArcabitTrojan.Zusy.D69E70
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.BitCoinMiner.R238395
Acronissuspicious
McAfeeArtemis!058260CCBB22
MAXmalware (ai score=84)
MalwarebytesMalware.AI.2558207702
RisingTrojan.Generic@AI.100 (RDML:R2sGxVgcFMd51Gsm6pN0Eg)
SentinelOneStatic AI – Suspicious PE
FortinetW32/ULPM.2C75!tr
AVGWin32:Evo-gen [Trj]

How to remove Zusy.433776 (B)?

Zusy.433776 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment