Malware

Zusy.441901 removal

Malware Removal

The Zusy.441901 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.441901 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Zusy.441901?


File Info:

name: F3104F0DCF14E0BBF999.mlw
path: /opt/CAPEv2/storage/binaries/d0cc17ad57453d466eba44eb254ff7c47274fb628fbc39abfdc3ec04b96238e3
crc32: DF031B11
md5: f3104f0dcf14e0bbf99999dcd4b45158
sha1: fd895ac64ddc95e2146c20ac882b5c74246e998a
sha256: d0cc17ad57453d466eba44eb254ff7c47274fb628fbc39abfdc3ec04b96238e3
sha512: bebab8740fe696d41c7adc7c02538e2b57e161b3d718d6321f679f64441ad850e9e1536ebbb9ec1c0f614efb54fda6838d33858c26d9bbe6c272e499275c1e7f
ssdeep: 12288:68E4PoLMb0CYmMyPfITah5YqG4MGa2i3LnVcY:6APt0CtMQx9i3LZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T169F4722ABB09BDC1E3A0653ACE9FC5754684BD16145673B33F4EBE9F7832312AC21146
sha3_384: 4a7a7ca86de502684f8626c3339cd0c67526b58ee4d40fd212dadb5ceafefec0f85239caf843a47f53bfcd4df6cd56be
ep_bytes: 60be15e057008dbeeb2fe8ffc7870c64
timestamp: 2022-02-22 00:45:54

Version Info:

CompanyName: 9bis.com
ProductName: cnKiTTY_v0.76.0.8.1
FileDescription: cnKiTTY - KiTTY中文版本
InternalName: PuTTY
OriginalFilename: KiTTY
SpecialBuild: cnKiTTY版权所属:(C)2021-2022 张朵 保留所有权利。
Comments: 基于KiTTY源码修改编译,可从dZ8Lx9OwX@github下载修改后的源码。希望这个程序能帮到你(^o^)!
FileVersion: Release 0.76 (without embedded help)
ProductVersion: Release 0.76 - Additional features on KiTTY That's all folks! by 9bis.com, 2005-2022
LegalCopyright: 版权所有(C)1997-2022 Simon Tatham.
Translation: 0x0804 0x04b0

Zusy.441901 also known as:

LionicRiskware.Win32.Zusy.1!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.441901
FireEyeGeneric.mg.f3104f0dcf14e0bb
McAfeeArtemis!F3104F0DCF14
MalwarebytesMalware.Heuristic.1003
VIPREGen:Variant.Zusy.441901
SangforTrojan.Win32.Zusy.Viza
ArcabitTrojan.Zusy.D6BE2D
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zusy.441901
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Zusy.441901
ComodoPacked.Win32.MUPX.Gen@24tbus
McAfee-GW-EditionArtemis!Trojan
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Zusy.441901 (B)
AviraHEUR/AGEN.1214989
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.441901
ALYacGen:Variant.Zusy.441901
MAXmalware (ai score=88)
CylanceUnsafe
TrendMicro-HouseCallTROJ_GEN.R002H09KD22
SentinelOneStatic AI – Malicious PE
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Zusy.441901?

Zusy.441901 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment