Malware

Zusy.465067 (file analysis)

Malware Removal

The Zusy.465067 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.465067 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.465067?


File Info:

name: BB5ECEBDF444F1DEA4A5.mlw
path: /opt/CAPEv2/storage/binaries/710105e6f78be433d3b1bea849858f0766602deaeb9c279837a23d3ae3b26901
crc32: 56736FFA
md5: bb5ecebdf444f1dea4a5f3c99d120010
sha1: 08d84c4b544bf94827e3ef9941c7451b32b2df13
sha256: 710105e6f78be433d3b1bea849858f0766602deaeb9c279837a23d3ae3b26901
sha512: 0721831c235916214020b258339c654abae959a85f949e62750e91bb405e42a904acb31670119212337fbd35fd72310b1ed5e3df1cec39f59be6da2d08193915
ssdeep: 6144:nPHwgK2bVMJuQ0hhFnfdaJqNrtWzCg2o:nPHwgxVMsQ0h7VkEWJb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13A64C616B390F72DD564C6F03A4683A0643AEC7265E46803F6C23F6A77B1DA7E621713
sha3_384: 75d65dac9f48072eda554a13e750ef5b14227fb84d015e1eacad95b0baa9abc91753868916f98dcc02bffa518d65e247
ep_bytes: 68084a4000e8eeffffff000000000000
timestamp: 1996-09-02 00:33:25

Version Info:

0: [No Data]

Zusy.465067 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.VbCrypt.150
MicroWorld-eScanGen:Variant.Zusy.465067
ClamAVWin.Trojan.Vobfus-70360
FireEyeGeneric.mg.bb5ecebdf444f1de
CAT-QuickHealTrojan.Beebone.D
ALYacGen:Variant.Zusy.465067
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36662.tmX@aKs0vDj
VirITTrojan.Win32.SHeur4.MYN
CyrenW32/Vobfus.SU.gen!Eldorado
SymantecW32.Changeup!gen15
ESET-NOD32Win32/Pronny.AC
ZonerTrojan.Win32.85665
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zusy.465067
NANO-AntivirusTrojan.Win32.Diple.cinarz
AvastWin32:AutoRun-CMS [Trj]
TencentWorm.Win32.Vobfus.kv
EmsisoftGen:Variant.Zusy.465067 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
BaiduWin32.Trojan.Inject.n
VIPREGen:Variant.Zusy.465067
TrendMicroWORM_VOBFUS.SMAB
McAfee-GW-EditionBehavesLike.Win32.VBObfus.fm
Trapminesuspicious.low.ml.score
SophosMal/SillyFDC-U
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.465067
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=84)
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumTrojWare.Win32.VB.AVA@4paxk7
ArcabitTrojan.Zusy.D718AB
ViRobotTrojan.Win32.A.Diple.286720.B
ZoneAlarmWorm.Win32.Vobfus.efft
MicrosoftWorm:Win32/Vobfus.gen!Q
GoogleDetected
AhnLab-V3Trojan/Win32.Diple.R126408
Acronissuspicious
McAfeeVBObfus.eq
TACHYONTrojan/W32.VB-Agent.323584.BY
VBA32BScope.Trojan.Diple
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallWORM_VOBFUS.SMAB
RisingWorm.Pronoy!1.9A2F (CLASSIC)
YandexTrojan.GenAsa!dzZglQkmYBs
IkarusWorm.Win32.Vobfus
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Diple.EJQE!tr
AVGWin32:AutoRun-CMS [Trj]
Cybereasonmalicious.df444f
DeepInstinctMALICIOUS

How to remove Zusy.465067?

Zusy.465067 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment