Malware

Zusy.446747 (file analysis)

Malware Removal

The Zusy.446747 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.446747 virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.446747?


File Info:

name: 4056EB88D3851647F3EA.mlw
path: /opt/CAPEv2/storage/binaries/bcb54b898d1239760d2571cd128b069bfe9a21df6df2e5df6984748dd1f95fc8
crc32: D54A639E
md5: 4056eb88d3851647f3eaa36cd1bdf199
sha1: dc9ea03e3c1f6dbf6c6fcaa22bc2285d50f6a824
sha256: bcb54b898d1239760d2571cd128b069bfe9a21df6df2e5df6984748dd1f95fc8
sha512: 9777461aa03ffed4f7c2a3f158373cc64172a030e4e584a3539966b6ac344bbdaabf822bde4b12d14100ba11e2e32e866d1d5fc02a13bf8fcce5fe287e2cfb52
ssdeep: 3072:MxiLBcaLg4DPnH25YOH6j3I67DgZ6t1x8hcNYBwsMuNyVVA5bbHpB5TuS:YiLBrLg4TOaL97kZ6tKFFM2tRTz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E614AD293CE683F6D752C4704875C7D115BEB121FF279A8FA2C52B550A132C1AA33DAE
sha3_384: 1bb5b1241457970990c727b67c2fa08ff5ad54c96e3ff4b31e55dfb32605ec8d81ab0995e91b4f5211cb533a3bcd6d64
ep_bytes: e8f53e0000e979feffffcccccccccccc
timestamp: 2020-12-21 08:45:40

Version Info:

0: [No Data]

Zusy.446747 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Burden.2!c
AVGWin32:AdwareX-gen [Adw]
MicroWorld-eScanGen:Variant.Zusy.446747
SkyhighBehavesLike.Win32.Generic.cc
McAfeePUP-XRC-BI
MalwarebytesCrypt.Trojan.MSIL.DDS
ZillyaAdware.Burden.Win32.2763
SangforTrojan.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (W)
AlibabaAdWare:Win32/Burden.669b3340
K7GWTrojan ( 0059ef9b1 )
K7AntiVirusTrojan ( 0059ef9b1 )
BitDefenderThetaGen:NN.ZexaF.36802.muY@aWEJOucj
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.ESYP
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Burden.gen
BitDefenderGen:Variant.Zusy.446747
NANO-AntivirusRiskware.Win32.Burden.jscziu
TencentMalware.Win32.Gencirc.115cf76a
EmsisoftGen:Variant.Zusy.446747 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Zusy.446747
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.4056eb88d3851647
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.Burden.ayv
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Kryptik.ayl
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitTrojan.Zusy.D6D11B
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Burden.gen
GDataGen:Variant.Zusy.446747
VaristW32/Burden.I.gen!Eldorado
AhnLab-V3Trojan/Win.Generic.R467604
ALYacGen:Variant.Zusy.446747
VBA32Adware.Burden
Cylanceunsafe
PandaTrj/CI.A
RisingTrojan.Znyonm!8.18A3A (TFE:5:c0qjSxeUhSN)
YandexPUA.Burden!wko9FvuB7bU
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.74161673.susgen
FortinetW32/Kryptik_AGen.AYL!tr
Cybereasonmalicious.8d3851
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Agent!GV.XDQ

How to remove Zusy.446747?

Zusy.446747 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment