Malware

Zusy.473293 malicious file

Malware Removal

The Zusy.473293 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.473293 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Zusy.473293?


File Info:

name: 49893107AD565492104D.mlw
path: /opt/CAPEv2/storage/binaries/df19eff39e9274336ebab0a66b6f39b441bbdb5b746d2725c5cae357b5180451
crc32: E14E33EE
md5: 49893107ad565492104d205b5abdb03a
sha1: 2bd8ac9040ff97c7a526e956961dafd6fe46dfea
sha256: df19eff39e9274336ebab0a66b6f39b441bbdb5b746d2725c5cae357b5180451
sha512: 3bdde8cc2b1a3f7000f3b1b8194dcd45c91791772bf2ff61d603e73ba831bbcf1905434ec321d61aa97df92d9c8d7c23f31740f1fabd48bd5ffe0bb00aab8aa8
ssdeep: 384:ML7li/2zMq2DcEQvdhcJKLTp/NK9xaDV:KAM/Q9cDV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T168423C63338A42B1C3BD0E331DA35102C7B7D20569369B6FB8CC56658FB36D845A1779
sha3_384: c3a09f3a446a962a49eafca34b4e2a64fe7baa1a7197da2c3fbd3f089046cc8dc53dbfdf619ca16d64c8645ab2988968
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-08-14 05:39:17

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: tmp3B4B.tmp.exe
LegalCopyright:
OriginalFilename: tmp3B4B.tmp.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Zusy.473293 also known as:

MicroWorld-eScanGen:Variant.Zusy.473293
ClamAVWin.Malware.Marsilia-10003123-0
FireEyeGeneric.mg.49893107ad565492
CAT-QuickHealTrojan.Generic.TRFH983
ALYacGen:Variant.Zusy.473293
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDropper.Agent.Win32.540465
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055f7621 )
K7GWTrojan ( 0055f7621 )
Cybereasonmalicious.7ad565
VirITTrojan.Win32.Genus.RYZ
CyrenW32/MSIL_Agent.HI.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.EMA
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Dropper.Win32.Dorifel.gen
BitDefenderGen:Variant.Zusy.473293
NANO-AntivirusTrojan.Win32.Win32.dccnlr
AvastWin32:MalwareX-gen [Trj]
TencentTrojan-Dropper.Win32.Dorifel.kh
TACHYONTrojan-Dropper/W32.DN-Dorifel.12800
SophosTroj/MDrop-JUL
F-SecureTrojan.TR/Kazy.25487956
DrWebTrojan.MulDrop3.48688
VIPREGen:Variant.Zusy.473293
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Zusy.473293 (B)
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan.PSE.14GXB96
JiangminTrojanDropper.Dorifel.vf
AviraTR/Kazy.25487956
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.MSIL.TrojanDropper.Agent.DFA@8k9bo4
ArcabitTrojan.Zusy.D738CD
ZoneAlarmHEUR:Trojan-Dropper.Win32.Dorifel.gen
MicrosoftTrojanDropper:Win32/Dorifel.AB!MTB
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Generic.C3532593
McAfeeGenericRXJJ-HV!49893107AD56
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/GdSda.A
RisingMalware.Obfus/MSIL@AI.83 (RDM.MSIL2:B9a85GOPFwmZXw7Gr8L5Yw)
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenericKD.3201!tr
BitDefenderThetaGen:NN.ZemsilF.36662.am0@a4M3PSm
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Zusy.473293?

Zusy.473293 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment