Malware

How to remove “Zusy.458539”?

Malware Removal

The Zusy.458539 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.458539 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Zusy.458539?


File Info:

name: 68A80F88460D73580635.mlw
path: /opt/CAPEv2/storage/binaries/574d62ee27640e607087bd29b869c8595f14447872117f7227d4d6bf2ac9a869
crc32: 58B90B81
md5: 68a80f88460d735806353c87468272fb
sha1: 98708111a166fb1da02e63aa8fad2e6a689b5933
sha256: 574d62ee27640e607087bd29b869c8595f14447872117f7227d4d6bf2ac9a869
sha512: 44af79f43a2915446e12d6c1f4cf03eda9a73714249207d92cead768071a4f377831df7672bb5675014819c9054a39171fc846843bd98265e081a43ec7ce7ac2
ssdeep: 6144:8SBPHPr5dFvW8HGzNz8I4vDWsQFN0cSnuXLH6M4hvB:DBPHVdFvW8Hu/4vDKFjXLGhvB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1056451BEBB00C4A5D05802747FE6F3E911923C499E27C7436660779E78BAD621C9CB87
sha3_384: 74bf6c7f5af4708aabab505f1f47d709cdb417854af96bb45875ff28b4ffab3f2300626bbd4f6619a3d9dab73e233476
ep_bytes: 6814134000e8f0ffffff000000000000
timestamp: 2005-11-29 18:25:11

Version Info:

0: [No Data]

Zusy.458539 also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.WBNA.lx0v
MicroWorld-eScanGen:Variant.Zusy.458539
ClamAVWin.Trojan.Vobfus-23
CAT-QuickHealTrojan.Beebone.D
ALYacGen:Variant.Zusy.458539
Cylanceunsafe
ZillyaTrojan.Jorik.Win32.77605
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2faa.None
K7GWEmailWorm ( 003c363a1 )
K7AntiVirusEmailWorm ( 003c363a1 )
VirITTrojan.Win32.VBCrypt.FEX
CyrenW32/Vobfus.SB.gen!Eldorado
SymantecW32.Changeup
Elasticmalicious (high confidence)
ESET-NOD32Win32/Pronny.AS
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Jorik.Vobfus.dnpz
BitDefenderGen:Variant.Zusy.458539
NANO-AntivirusTrojan.Win32.Jorik.cqkxue
AvastWin32:Vitro [Inf]
TencentTrojan.Win32.Jorik.hd
EmsisoftGen:Variant.Zusy.458539 (B)
F-SecureTrojan.TR/Barys.2490.jh
DrWebWin32.HLLW.Autoruner1.35581
VIPREGen:Variant.Zusy.458539
TrendMicroTROJ_GEN.R002C0CEL23
McAfee-GW-EditionBehavesLike.Win32.VBObfus.ft
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.68a80f88460d7358
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.10T9JN3
AviraTR/Barys.2490.jh
MAXmalware (ai score=88)
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumTrojWare.Win32.VB.DNPZ@4p78ez
ArcabitTrojan.Zusy.D6FF2B
ZoneAlarmTrojan.Win32.Jorik.Vobfus.dnpz
MicrosoftWorm:Win32/Vobfus.FD
GoogleDetected
AhnLab-V3Trojan/Win32.Vobfus.R188257
Acronissuspicious
McAfeeVBObfus.dv
TACHYONTrojan/W32.VB-Jorik.315392.O
VBA32Trojan.Vobfus
MalwarebytesPronny.Worm.Spreader.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0CEL23
RisingWorm.Pronny!1.AE42 (CLASSIC)
YandexTrojan.GenAsa!tu90GqCAr08
IkarusWorm.Win32.Vobfus
FortinetW32/VBObfus.AU!tr
BitDefenderThetaGen:NN.ZevbaF.36196.tqZ@aaFthVp
AVGWin32:Vitro [Inf]
Cybereasonmalicious.8460d7
DeepInstinctMALICIOUS

How to remove Zusy.458539?

Zusy.458539 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment