Malware

Zusy.468992 (B) information

Malware Removal

The Zusy.468992 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.468992 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.468992 (B)?


File Info:

name: A63CED939F84B7D77E92.mlw
path: /opt/CAPEv2/storage/binaries/1b5834b20d4bd244fc9d8fbaf0b88b71d49ee2c2b37b47f8432ce733b9495f9f
crc32: D553BA9F
md5: a63ced939f84b7d77e92c36888f692ea
sha1: a252dbc160a2d8bf6bf9c00bde14ff0b63e8b285
sha256: 1b5834b20d4bd244fc9d8fbaf0b88b71d49ee2c2b37b47f8432ce733b9495f9f
sha512: 9b158f238a0197eca4e7948bc7dcc3116f1ee2272859a1dc30ebb0b88dfbb4529c46ff2b8da4f8b0de2a64d3eabf447533613711fea580ce38bc5924340c7d67
ssdeep: 3072:jkPw6RonDHLS2dy1tZ+48hwM8lvnqnviuX:jkjoSCy1T8aM8lPqnviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T159048F628970BB13E951093517E06BFB801D3C2F4BE506097CAEDA5F3763D9A349F942
sha3_384: 5b578534b3962f9170e112a30507957174db3e104b831dc845796283980a3f8766bc887240f110894ec2fc9b42bbe192
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Zusy.468992 (B) also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.468992
CAT-QuickHealTrojan.MuldVMF.S21469993
SkyhighBehavesLike.Win32.Generic.ct
McAfeeGenericRXHC-SS!A63CED939F84
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.GenKryptik.Win32.525248
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.210E543B1F
VirITTrojan.Win32.VBUCornT.DRP
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.FNGV
APEXMalicious
AvastWin32:VB-AJKU [Trj]
ClamAVWin.Malware.Midie-6847893-0
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Zusy.468992
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
TencentTrojan.Win32.VB.ko
EmsisoftGen:Variant.Zusy.468992 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Zusy.468992
FireEyeGeneric.mg.a63ced939f84b7d7
SophosMal/VB-AQT
SentinelOneStatic AI – Malicious PE
JiangminTrojan.VB.aqyg
ALYacGen:Variant.Zusy.468992
VaristW32/VB_Troj.J.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Wacatac.b
Kingsoftmalware.kb.a.999
MicrosoftTrojanDropper:Win32/Muldrop.V!MTB
ArcabitTrojan.Zusy.D72800
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Agent.R618781
Acronissuspicious
VBA32SScope.Trojan.VB
GoogleDetected
TACHYONTrojan/W32.VB-Agent.188495.F
Cylanceunsafe
RisingTrojan.VBClone!1.E032 (CLASSIC)
YandexTrojan.VB!y307/RGG67E
IkarusTrojan.Crypt
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
Cybereasonmalicious.39f84b
DeepInstinctMALICIOUS
alibabacloudTrojan:Multi/Muldrop.B

How to remove Zusy.468992 (B)?

Zusy.468992 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment