Malware

How to remove “Zusy.439459”?

Malware Removal

The Zusy.439459 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.439459 virus can do?

  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.439459?


File Info:

name: C43FEB8704842B7D9A85.mlw
path: /opt/CAPEv2/storage/binaries/e32ed8c4ef722ffd664b6fda5de61aa5980fab9ec2ad015a19c343169c121152
crc32: C0099013
md5: c43feb8704842b7d9a8514b0987bf3d6
sha1: f703c67e763877970d8293367921d88b772c90aa
sha256: e32ed8c4ef722ffd664b6fda5de61aa5980fab9ec2ad015a19c343169c121152
sha512: efe860fa652e12b385752f72b505beb416d3eedc0fe5eda86236632443b83da44ad1eeaa53cf1782e076596e59663c8906b8fd04d1c29db0ce7f4b10e27765fe
ssdeep: 3072:5x07Jn8FAX1eHi7bXnbNppseYcpvLC8ss6DkuLamsjUyZvYtI54qsgREGU:s7Jn8FAskXBjscp+TsGa1N
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5844BD5B2C1B062D7BB21B5007B050EB232BCF614389611F1A9F4EABCB4949953BF6D
sha3_384: 2003b706aadf42f952c3f1ec6117e903eab45dbb2fd30fd6aff019d9349d835ff5a338f070aadcaad1f53184ca2488e5
ep_bytes: 60be00b049008dbe0060f6ff5783cdff
timestamp: 2014-11-03 12:58:18

Version Info:

0: [No Data]

Zusy.439459 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Zusy.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.439459
SkyhighBehavesLike.Win32.Generic.ft
McAfeeGenericRXAA-AA!C43FEB870484
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Zusy.439459
SangforSuspicious.Win32.Save.a
BitDefenderGen:Variant.Zusy.439459
BitDefenderThetaGen:NN.ZexaF.36792.xmW@am5jPKPi
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Malware.Softpulse-9956810-0
AlibabaTrojanDropper:Win32/Generic.8fad830c
SophosMal/Generic-S
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.c43feb8704842b7d
EmsisoftGen:Variant.Zusy.439459 (B)
IkarusTrojan-Dropper.Agent
WebrootPua.Tuguu
GoogleDetected
VaristW32/SoftPulse.BZ.gen!Eldorado
Kingsoftmalware.kb.b.985
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D6B4A3
GDataGen:Variant.Zusy.439459
CynetMalicious (score: 100)
AhnLab-V3PUP/Win.SoftPulse.R503181
Acronissuspicious
ALYacGen:Variant.Zusy.439459
MAXmalware (ai score=85)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09GT23
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.188059951.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Zusy.439459?

Zusy.439459 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment