Malware

About “Zusy.474730” infection

Malware Removal

The Zusy.474730 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.474730 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Zusy.474730?


File Info:

name: EB89D7CECD77054CA52D.mlw
path: /opt/CAPEv2/storage/binaries/8353b043fbc6a343c675b6208683e52d4cf48fbb591261d45ee9dedd27d6e343
crc32: AE2D28F5
md5: eb89d7cecd77054ca52d1cbcdd63ad08
sha1: 0921033d12ca5c6f1f9dcef13aef1b0f95ad3972
sha256: 8353b043fbc6a343c675b6208683e52d4cf48fbb591261d45ee9dedd27d6e343
sha512: 4ba654e2bfafd35881a344c660e07ecfa0b614466cf27863b9ff831e0dfe01c64ef770616866bb7c09a64f7148457097c90bf77014c68495afd33b29b0ea203f
ssdeep: 384:4L7li/2zVq2DcEQvdhcJKLTp/NK9xaIW:GNM/Q9cIW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FA423C63338A42B2C3BD0E3319A35102C7B7D2056936AB5FBC8C56658FF36D84692779
sha3_384: 0d7af251cdb162c0400bd51764acff642d642a01a351ccacae5013d95ff287fde6b2880e18cbdef028b78d355f4b5756
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-10-20 13:54:26

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: tmp4D93.tmp.exe
LegalCopyright:
OriginalFilename: tmp4D93.tmp.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Zusy.474730 also known as:

LionicTrojan.Win32.Dorifel.4!c
MicroWorld-eScanGen:Variant.Zusy.474730
ClamAVWin.Malware.Marsilia-10003123-0
FireEyeGeneric.mg.eb89d7cecd77054c
CAT-QuickHealTrojan.Generic.TRFH983
McAfeeGenericRXJJ-HV!EB89D7CECD77
Cylanceunsafe
ZillyaDropper.Agent.Win32.540483
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055f7621 )
AlibabaTrojanDropper:Win32/Dorifel.702b284b
K7GWTrojan ( 0055f7621 )
Cybereasonmalicious.ecd770
BitDefenderThetaGen:NN.ZemsilF.36350.am0@aK3iVug
VirITTrojan.Win32.Genus.RYZ
CyrenW32/MSIL_Agent.HI.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.EMA
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Dropper.Win32.Dorifel.gen
BitDefenderGen:Variant.Zusy.474730
NANO-AntivirusTrojan.Win32.Win32.dccnlr
AvastWin32:MalwareX-gen [Trj]
TACHYONTrojan-Dropper/W32.DN-Dorifel.12800
EmsisoftGen:Variant.Zusy.474730 (B)
F-SecureTrojan.TR/Kazy.25487956
DrWebTrojan.MulDrop3.48688
VIPREGen:Variant.Zusy.474730
TrendMicroTROJ_GEN.R002C0DGH23
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
Trapminemalicious.moderate.ml.score
SophosTroj/MDrop-JUL
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan.PSE.14GXB96
JiangminTrojanDropper.Dorifel.vf
AviraTR/Kazy.25487956
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.MSIL.TrojanDropper.Agent.DFA@8k9bo4
ArcabitTrojan.Zusy.D73E6A
ViRobotTrojan.Win.Z.Zusy.12800.ZI
ZoneAlarmHEUR:Trojan-Dropper.Win32.Dorifel.gen
MicrosoftTrojanDropper:Win32/Dorifel.AB!MTB
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Generic.C3532593
ALYacGen:Variant.Zusy.474730
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DGH23
TencentTrojan-Dropper.Win32.Dorifel.kh
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenericKD.3201!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.474730?

Zusy.474730 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment