Malware

Zusy.468663 (B) (file analysis)

Malware Removal

The Zusy.468663 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.468663 (B) virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.468663 (B)?


File Info:

name: 200279F216D98E5FED9A.mlw
path: /opt/CAPEv2/storage/binaries/0b0741008df166a44445a3783206029fb6137395f612fb8705664a683d94c7e1
crc32: 46DA9674
md5: 200279f216d98e5fed9a468d2cacf531
sha1: d9ab0af70531b4f7b43a306200af4a6580ba070b
sha256: 0b0741008df166a44445a3783206029fb6137395f612fb8705664a683d94c7e1
sha512: 3517e7b6eab8b4c4877e9ccee0cf347aa0c9ec25665f64b2eb325c6a07514924e213c88cf816d01acc8d81439fc5f2cb6c5321171cafc964e51807a5838c5459
ssdeep: 1536:ubiTo6zTKMdsyhJIlgrEOuQzSgdFZdUYiZBAc9GjaWY3s0nD+Do5PMD/AUstW:E6zWs3JPETgddRAL9VnD+Do5Py/AUsk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BFD38B217290D072E5920630796EFBB1AABEFC311974C553B39837AE5E717C0963A31B
sha3_384: f8aefe87e45f7b73992b83e3d68da1d031bfa2d7dd3fcf1b356957d0acf7e509a3118ddc8dd3c171460c3c701969e004
ep_bytes: e82a860000e978feffff558bec8bff81
timestamp: 2014-09-19 05:37:05

Version Info:

Comments: Zoom
CompanyName: Zoom Video Communications, Inc.
FileDescription: Zoom
FileVersion: 1, 5, 411, 2013
InternalName: Zoom
LegalCopyright: Copyright (C) 2011-2012 Zoom Video Communications, Inc. All rights reserved.
LegalTrademarks: zoom.us
OriginalFilename: Zoom_launcher.exe
ProductName: Zoom boot loader
ProductVersion: 1, 5, 411, 2013
Translation: 0x0409 0x04b0

Zusy.468663 (B) also known as:

MicroWorld-eScanGen:Variant.Zusy.468663
FireEyeGen:Variant.Zusy.468663
BitDefenderGen:Variant.Zusy.468663
VIPREGen:Variant.Zusy.468663
McAfee-GW-EditionBehavesLike.Win32.NetLoader.ch
EmsisoftGen:Variant.Zusy.468663 (B)
ArcabitTrojan.Zusy.D726B7
GDataGen:Variant.Zusy.468663
GoogleDetected
MAXmalware (ai score=86)
PandaTrj/Genetic.gen
IkarusTrojan-Downloader.Win32.Generic
FortinetW32/Wacatac.B!tr

How to remove Zusy.468663 (B)?

Zusy.468663 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment