Malware

Should I remove “Zusy.440160 (B)”?

Malware Removal

The Zusy.440160 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.440160 (B) virus can do?

  • Reads data out of its own binary image
  • Unconventionial binary language: Portuguese (Brazil)
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Zusy.440160 (B)?


File Info:

name: C9DF95C59E3351E94B49.mlw
path: /opt/CAPEv2/storage/binaries/82430e7269087d7e955dbec4555dcff4747dae5efc0243667d033f5e6e2ac6ab
crc32: 016F89BD
md5: c9df95c59e3351e94b49b83cb2e47e4b
sha1: ccfe0232c0ce340c4d5bd733746ff811d208f543
sha256: 82430e7269087d7e955dbec4555dcff4747dae5efc0243667d033f5e6e2ac6ab
sha512: 76f4fee87da2919e6965b4aba4203e1cb7cf92378f6d5f78e8c5c120820805324c1d284a156d91202fdd0af2a7f418e7ea0a79ecfd502b1aa2c38ed79e9e17ce
ssdeep: 24576:XUCqwi10IlXes0wVhRoMHPslzbjXelQrnp:XFqq1wDvsRbrqQrnp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17F253A3B778E9935DC3218BC4D8FE6A0A85A36742C189E93F7D09F4D5E34181372A94B
sha3_384: 77873331c21d15be88bdc0c630d05b223ceba5e2689aaa4db9ad3268b3264e26f73bde83d45f652872ac7d3ff740cf69
ep_bytes: 558bec83c4f05356b87c6c4e00e86601
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName:
FileDescription:
FileVersion: 1.0.0.37
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName:
ProductVersion: 1.0.0.0
Translation: 0x0416 0x04e4

Zusy.440160 (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.440160
FireEyeGeneric.mg.c9df95c59e3351e9
CAT-QuickHealTrojan.Dorv.9812
McAfeePWS-Banker.gen.ez
CylanceUnsafe
ZillyaTrojan.FakeAV.Win32.109581
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 004bfe9d1 )
BitDefenderGen:Variant.Zusy.440160
Cybereasonmalicious.59e335
ArcabitTrojan.Zusy.D6B760
BitDefenderThetaGen:NN.ZelphiF.34754.@G0@ai1z35iG
VirITTrojan.Win32.Generic.CLMX
CyrenW32/Banker.V.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Banker.WGA
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Netmail-9844910-0
KasperskyTrojan-Ransom.Win32.Blocker.kkoq
NANO-AntivirusTrojan.Win32.FakeAV.drrvw
CynetMalicious (score: 100)
RisingRansom.Agent!8.6B7 (TFE:5:Ku0xTvM8GaG)
Ad-AwareGen:Variant.Zusy.440160
SophosML/PE-A + Troj/Banker-GYO
ComodoTrojWare.Win32.Spy.Banker.VIS@8ekceg
F-SecureDropper.DR/Delphi.Gen
DrWebTrojan.DownLoader4.51703
VIPREGen:Variant.Zusy.440160
McAfee-GW-EditionBehavesLike.Win32.PWSBanker.fh
EmsisoftGen:Variant.Zusy.440160 (B)
SentinelOneStatic AI – Suspicious PE
AviraDR/Delphi.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.FakeAV
MicrosoftTrojan:Win32/Dorv.B!rfn
ZoneAlarmTrojan-Ransom.Win32.Blocker.kkoq
GDataWin32.Trojan-Stealer.Banker.AK
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.C134638
VBA32BScope.Trojan.Downloader
ALYacGen:Variant.Zusy.440160
TACHYONTrojan/W32.DP-Agent.1044992.C
MalwarebytesMalware.AI.1791245093
PandaGeneric Malware
TencentTrojan-Ransom.Win32.Blocker.he
YandexTrojan.FakeAV!WsJ4kBJx68o
IkarusTrojan-Banker.Win32.Delf
FortinetW32/Banker.WGA!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.440160 (B)?

Zusy.440160 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment