Malware

Zusy.454899 removal instruction

Malware Removal

The Zusy.454899 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.454899 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Zusy.454899?


File Info:

name: 411786471FD16282D6E9.mlw
path: /opt/CAPEv2/storage/binaries/e4c90f48d7ab2786a3c71f9d35171b64e158ece57f56f2c0bd769aca37a2bb73
crc32: 106C10D3
md5: 411786471fd16282d6e968f906929c9f
sha1: ca6110cf0b2a038fad1f0811f2bbb252969e519e
sha256: e4c90f48d7ab2786a3c71f9d35171b64e158ece57f56f2c0bd769aca37a2bb73
sha512: daa751df928a0dd8794fc9b06b550c009b63c9fbbfaafda884b33ad5cf0c759322b1d14316855bea20c24e4cbda45cb38fc4af36d5250ab4c516da3dd98b5a83
ssdeep: 3072:442q4cZqXmClPNTjrYHaKiOPrRi3AHodPkzEFM7eJl:442q4cZqXmCfTjGZPrjHo9kzeJl
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T187A3E177BA001AF7D78213F13D5B54C6371A96B612FAC3A024B8C00D165AEBA43FB6D1
sha3_384: 2138826ccff00f505c56aa07a14a3ab8c1a2691d4e5aca751a3b1b9bb6874af00f8e8033a21996d87bef6a931b4d5ca7
ep_bytes: bb000000005781e9e6cef51801d221c9
timestamp: 1975-06-24 00:00:00

Version Info:

0: [No Data]

Zusy.454899 also known as:

LionicTrojan.Win32.Convagent.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen20.61197
MicroWorld-eScanGen:Variant.Zusy.454899
ClamAVWin.Packed.Barys-10002300-0
FireEyeGeneric.mg.411786471fd16282
McAfeeGlupteba-FUBP!411786471FD1
MalwarebytesMalware.AI.820611776
VIPREGen:Variant.Zusy.454899
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005304e81 )
AlibabaTrojan:Win32/Kryptik.5c65f587
K7GWTrojan ( 005304e81 )
Cybereasonmalicious.f0b2a0
BitDefenderThetaGen:NN.ZexaCO.36250.g4W@amzfte
CyrenW32/Injector.BKX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HTAQ
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.abgrv
BitDefenderGen:Variant.Zusy.454899
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Copak.Qsmw
EmsisoftGen:Variant.Zusy.454899 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
TrendMicroTROJ_GEN.R002C0PF923
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.454899
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Kryptik
ArcabitTrojan.Zusy.D6F0F3
ZoneAlarmTrojan.Win32.Copak.abgrv
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Zusy.454899
Cylanceunsafe
PandaTrj/Chgt.AC
TrendMicro-HouseCallTROJ_GEN.R002C0PF923
RisingTrojan.Kryptik!1.D12D (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DZQA!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.454899?

Zusy.454899 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment