Malware

Should I remove “Zusy.435464 (B)”?

Malware Removal

The Zusy.435464 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.435464 (B) virus can do?

  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.435464 (B)?


File Info:

name: B67A732F8CE248CF4757.mlw
path: /opt/CAPEv2/storage/binaries/8811413350104c83cf5bd5f2a527ebd50e3dcaee55aa6abd7ee92437675753c6
crc32: 88C74326
md5: b67a732f8ce248cf4757d5d96ed0cef6
sha1: e504681c455afca98211b496c20590d7f53c2f24
sha256: 8811413350104c83cf5bd5f2a527ebd50e3dcaee55aa6abd7ee92437675753c6
sha512: 606b7310e18323f1309fdad30f8832e8a3402b86aaac5d7235cef4e5b53a11db52187111945e35da1f50b4d72b751c9ededad71fb25f45e1196aea52bfcdf69c
ssdeep: 3072:Qx0FJn8FAX1eHi7bXnbNppseYcpvLC8ss6DkuLampXclJ8J5nvy7s:PFJn8FAskXBjscp+TsGa8cB7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T166844BD5B2C1B062D7BB21B5007B050EB233BCF614389611F1A9F4EABCB4949953BF69
sha3_384: d95a4f5986bc04f06b725257721c368284192f73d6b026f9c6979b84c545c24583375d14a3a93e802a1b1e77d229b1e1
ep_bytes: 60be00b049008dbe0060f6ff5783cdff
timestamp: 2014-10-31 16:07:43

Version Info:

0: [No Data]

Zusy.435464 (B) also known as:

MicroWorld-eScanGen:Variant.Zusy.435464
FireEyeGeneric.mg.b67a732f8ce248cf
ALYacGen:Variant.Zusy.435464
CylanceUnsafe
VIPREGen:Variant.Zusy.435464
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZexaF.34646.xmW@ai1xRzKi
CyrenW32/SoftPulse.BZ.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
ClamAVWin.Malware.Softpulse-9956810-0
BitDefenderGen:Variant.Zusy.435464
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Zusy.435464
EmsisoftGen:Variant.Zusy.435464 (B)
Trapminesuspicious.low.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.435464
WebrootPua.Tuguu
GoogleDetected
AviraHEUR/AGEN.1234318
ArcabitTrojan.Zusy.D6A508
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3PUP/Win.SoftPulse.R503181
McAfeeGenericRXAA-AA!B67A732F8CE2
MAXmalware (ai score=80)
MalwarebytesPUP.Optional.SoftPulse
RisingAdware.uTorrent!8.14589 (C64:YzY0OpOXQDJcU48V)
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.7175209.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen

How to remove Zusy.435464 (B)?

Zusy.435464 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment