Malware

Zusy.462736 removal instruction

Malware Removal

The Zusy.462736 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.462736 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Zusy.462736?


File Info:

name: 7EBBD6C2607BEBC428D8.mlw
path: /opt/CAPEv2/storage/binaries/7a97a81bcc91df3c56990e52a1b8762f4c82f1961a7083e8fbaee3ed52b93563
crc32: C2602979
md5: 7ebbd6c2607bebc428d8f4cc878fa34e
sha1: bbe2f608b6389025d68076b5b961428fb3a6ce15
sha256: 7a97a81bcc91df3c56990e52a1b8762f4c82f1961a7083e8fbaee3ed52b93563
sha512: c138f977c88a12a323c21409d08a3300e06bd904a7a0635c1157d29270fba303e34482d6e5a00fe29355f9ca0e5bd13a9fa7ab86fe33b2d3ce28f44acabc7b35
ssdeep: 24576:udEp7HkFau2uhB0Ix8YU+aaqXieBhClRlxtpHpUsaaq/5:D7Hbu2uhBeYU+8eys8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T198757B172BDD8AD4D17F3AF948A191074771EC066B02C706B93035EAEA72793EDC264E
sha3_384: a526ebcd1f76cd2a2b3feb570434386f2a84535a296b4cde1541d4ab8887952a4aae01768982c98ea3061e50bf808548
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-09-05 13:13:11

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: '
FileVersion: 1.0.0.0
InternalName: Launcher.exe
LegalCopyright:
OriginalFilename: Launcher.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 0.0.0.0

Zusy.462736 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.DllInject.4!c
MicroWorld-eScanGen:Variant.Zusy.462736
FireEyeGen:Variant.Zusy.462736
SkyhighArtemis!Trojan
McAfeeArtemis!7EBBD6C2607B
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 0058c0401 )
K7GWUnwanted-Program ( 0058c0401 )
BitDefenderThetaGen:NN.ZemsilF.36744.On0@a4mtIIp
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/DllInject.ARJ potentially unsafe
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zusy.462736
AvastWin32:MiscX-gen [PUP]
EmsisoftGen:Variant.Zusy.462736 (B)
VIPREGen:Variant.Zusy.462736
SophosMal/Generic-R
IkarusPUA.MSIL.Dllinject
GDataGen:Variant.Zusy.462736
GoogleDetected
Antiy-AVLRiskWare/MSIL.DllInject
ArcabitTrojan.Zusy.D70F90
MicrosoftProgram:Win32/Wacapew.C!ml
ALYacGen:Variant.Zusy.462736
MAXmalware (ai score=81)
MalwarebytesDllInjector.Trojan.Injector.DDS
TrendMicro-HouseCallTROJ_GEN.R002H09AA24
RisingPUA.DllInject!8.6CC (CLOUD)
YandexRiskware.Agent!+5pEDD/qnDQ
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.187737063.susgen
FortinetAdware/DllInject
AVGWin32:MiscX-gen [PUP]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Zusy.462736?

Zusy.462736 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment