Malware

What is “Zusy.456338”?

Malware Removal

The Zusy.456338 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.456338 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Zusy.456338?


File Info:

name: 9DD5466DB414F39F6273.mlw
path: /opt/CAPEv2/storage/binaries/a2cefeef2e22eb162438c11586ff9f651ec7bc1ef0a7abe0e27b00ebbe7da4d0
crc32: BB9D85F9
md5: 9dd5466db414f39f627372f86b575ec4
sha1: 6ad7ed7c0aa6be8a2d2042de885f2c3d01027067
sha256: a2cefeef2e22eb162438c11586ff9f651ec7bc1ef0a7abe0e27b00ebbe7da4d0
sha512: 22fd7e1a135d905727bf86c989afc3713cdc2a10d3eb33fcd0060894f51872c21d4464e6cdd803a174f5b22bedd7d1fb283ed5e233baf60400f1df1740af6c49
ssdeep: 1536:w+cNYsI8NKsWjcdQ/PcUy2Ed2VGn82ShmVri3VrG4LQtzys9:SYs9TGcUyiGnzJrb42zy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T199E38E1673C10272DCA202721A69C592B73E7DF157B98DD1B2E8110F1AB2BD5873EB63
sha3_384: fe2d7aede9d4ffb0f7fcd28f3868f0ee2a4587778db99ab5c6d6390d3f326ecd2862a29987e442e149ff4690321c43be
ep_bytes: 7dd48b45d88b55e03bf90f8dbf000000
timestamp: 2023-07-22 13:45:31

Version Info:

0: [No Data]

Zusy.456338 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.456338
ClamAVWin.Malware.Zusy-9957983-0
McAfeeGenericRXVS-GX!9DD5466DB414
MalwarebytesMalware.AI.2653003641
SangforTrojan.Win32.Save.a
Cybereasonmalicious.c0aa6b
BitDefenderThetaGen:NN.ZexaF.36196.j4Z@a4yZ60c
CyrenW32/Agent.FWC.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zusy.456338
SUPERAntiSpywareTrojan.Agent/Gen-Malagent
AvastWin32:Kryptik-IVQ [Trj]
TACHYONTrojan/W32.Agent.151552.CCG
EmsisoftGen:Variant.Zusy.456338 (B)
VIPREGen:Variant.Zusy.456338
TrendMicroTROJ_GEN.R03BC0DEK23
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.9dd5466db414f39f
SophosMal/EncPk-FX
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.Agent.AXD
JiangminTrojan.GenericML.aof
Antiy-AVLTrojan/Win32.Prepscram
ArcabitTrojan.Zusy.D6F692
MicrosoftTrojan:Win32/Prepscram.A!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Prepscram.R566953
Acronissuspicious
ALYacGen:Variant.Zusy.456338
MAXmalware (ai score=89)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0DEK23
RisingVirus.CTS!1.DA0D (CLASSIC)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Zusy.456338!tr
AVGWin32:Kryptik-IVQ [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.456338?

Zusy.456338 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment