Malware

What is “Zusy.457281”?

Malware Removal

The Zusy.457281 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.457281 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Zusy.457281?


File Info:

name: DB68AD081D252E6BDF27.mlw
path: /opt/CAPEv2/storage/binaries/163e4a709e9cfe20974a56aa3198a8a2cc7036a647446fe91fc37233a3f94c3c
crc32: EFF6FF25
md5: db68ad081d252e6bdf278093d7e2ab72
sha1: 7f09ad4cbcf0032bec8dac3b2c594bbfa9ccab2a
sha256: 163e4a709e9cfe20974a56aa3198a8a2cc7036a647446fe91fc37233a3f94c3c
sha512: b7333ace56f991489086ca171f067bb581e222143c18a72fec2b5369b3151e7eaa796c1f970980665e4454fe704ef950ae7a053912e90e9bedf58d18bd16fc76
ssdeep: 3072:o0A2afa1Nbn4DpS41Zr8EbjfmNwXl1RgxfGDP8F2dqMOkeuF7SzotBX7L:zay1Nz4Dp7R8cA0l1RpLtJj7Skb3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C65484157390FB2DD520C5F02A4683A0A87EDD3264E56803FAC13F6A77B1DABE161727
sha3_384: daebf3f67249cc2f9e9fba5fd7ff95b9435258691760f58bba53ae4766e6aa8731271d48cc279b9e3030d07b2a9d2d76
ep_bytes: 68e44a4000e8eeffffff000000000000
timestamp: 2012-01-07 18:24:49

Version Info:

0: [No Data]

Zusy.457281 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.457281
CAT-QuickHealTrojan.Beebone.D
SkyhighBehavesLike.Win32.VBObfus.dm
McAfeeVBObfus.eq
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Zusy.457281
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
K7GWEmailWorm ( 0054d10f1 )
Cybereasonmalicious.cbcf00
BaiduWin32.Trojan.VBObfus.f
VirITTrojan.Win32.SHeur4.MTF
SymantecW32.Changeup
ESET-NOD32a variant of Win32/AutoRun.VB.AQN
APEXMalicious
TrendMicro-HouseCallWORM_VOBFUS.SMAB
ClamAVWin.Trojan.Vobfus-35
KasperskyWorm.Win32.Vobfus.dgpv
BitDefenderGen:Variant.Zusy.457281
NANO-AntivirusTrojan.Win32.Jorik.khcnas
AvastWin32:AutoRun-CMZ [Trj]
TencentWorm.Win32.Vobfus.hn
SophosMal/SillyFDC-U
GoogleDetected
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebTrojan.VbCrypt.150
TrendMicroWORM_VOBFUS.SMAB
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.db68ad081d252e6b
EmsisoftGen:Variant.Zusy.457281 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/Vobfus.AI.gen!Eldorado
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=84)
Antiy-AVLWorm/Win32.WBNA.gen
Kingsoftmalware.kb.a.1000
MicrosoftWorm:Win32/Vobfus!pz
XcitiumWorm.Win32.VB.AUB@4ol77w
ArcabitTrojan.Zusy.D6FA41
ViRobotWorm.Win32.A.WBNA.290816.BY
ZoneAlarmWorm.Win32.Vobfus.dgpv
GDataGen:Variant.Zusy.457281
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Jorik.R490516
Acronissuspicious
VBA32TScope.Trojan.VB
ALYacGen:Variant.Zusy.457281
TACHYONTrojan/W32.VB-Agent.299008.BU
Cylanceunsafe
PandaTrj/Genetic.gen
RisingWorm.Pronoy!1.9A2F (CLASSIC)
YandexTrojan.GenAsa!iefZtqwFMM4
IkarusSality.Win32
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Diple.EJQE!tr
BitDefenderThetaAI:Packer.8DE7EE741E
AVGWin32:AutoRun-CMZ [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Zusy.457281?

Zusy.457281 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment