Malware

Zusy.467017 (B) removal guide

Malware Removal

The Zusy.467017 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.467017 (B) virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Installs itself for autorun at Windows startup
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.467017 (B)?


File Info:

name: A1037BF88B8BE5AF42E7.mlw
path: /opt/CAPEv2/storage/binaries/8cdd712e05e394df028de0e20290ade38fdd26a8ea74cdd47a932897dc503463
crc32: 6FE23AEE
md5: a1037bf88b8be5af42e70a1a8ee39257
sha1: 244d7190f38a56d78f35ce0e7b25c20f37f0b188
sha256: 8cdd712e05e394df028de0e20290ade38fdd26a8ea74cdd47a932897dc503463
sha512: c288f197340258c7af358d6cccff408b3820e84e9b4d4999bfc045047f2254ab5d7e12ef57b26e59572151897c9130404905189ba2a7578e8a2fc27c67dbb59d
ssdeep: 6144:6yV0d0WfC8cLoVm5J7P4KMCH+YZim3yX515YycfH6DXZqJz8S:L0d0WfCPoVm514KXH1ZimiXH+PkXZezd
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T186743A76EA41D23BC0223AF89FAAC4E59660F8202C6658C777E71F4F0B759D07E24716
sha3_384: 9f4b5f2f21c7bf3c5e984b66d82f470f6a4bf6d58cd8f41ca3b7adaf4029d7bbb663023781191d5466eb7fec206a343b
ep_bytes: 5589e5c605105344000168f06945006a
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Zusy.467017 (B) also known as:

MicroWorld-eScanGen:Variant.Zusy.467017
FireEyeGen:Variant.Zusy.467017
ALYacGen:Variant.Zusy.467017
MalwarebytesMalware.AI.122100081
BitDefenderThetaGen:NN.ZexaF.36196.vyX@aGm3yTe
CyrenW32/Delf_Troj.ER.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Delf.UYZ
KasperskyUDS:Trojan.Win32.Agent
BitDefenderGen:Variant.Zusy.467017
NANO-AntivirusTrojan.Win32.Delf.jvytgf
AvastWin32:MalwareX-gen [Trj]
EmsisoftGen:Variant.Zusy.467017 (B)
F-SecureTrojan.TR/Redcap.fzixi
DrWebTrojan.MulDrop22.563
VIPREGen:Variant.Zusy.467017
McAfee-GW-EditionArtemis
GDataGen:Variant.Zusy.467017
GoogleDetected
AviraTR/Redcap.fzixi
MAXmalware (ai score=80)
Antiy-AVLTrojan/Win32.Delf
ArcabitTrojan.Zusy.D72049
ZoneAlarmUDS:Trojan.Win32.Agent
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.R577210
McAfeeArtemis!A1037BF88B8B
VBA32Trojan.MulDrop
PandaTrj/Genetic.gen
RisingTrojan.Generic@AI.100 (RDML:1n02Se4CEgmnLaS2QubMtQ)
IkarusTrojan.Win32.Delf
FortinetW32/Delf.UYZ!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Zusy.467017 (B)?

Zusy.467017 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment