Malware

What is “Zusy.482041”?

Malware Removal

The Zusy.482041 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.482041 virus can do?

  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.482041?


File Info:

name: 52D79D882E8ECB259D7E.mlw
path: /opt/CAPEv2/storage/binaries/c7380d072fd29db54afc0507b85c8684d5e4af192999315c3813f9f6c4a588c6
crc32: 5EBAC8B4
md5: 52d79d882e8ecb259d7e142730a72bed
sha1: 3f051e25de7cab658f70d8e5861cbf442a16cb3d
sha256: c7380d072fd29db54afc0507b85c8684d5e4af192999315c3813f9f6c4a588c6
sha512: da3249d1e55e636f5b696a2c8da80cb0809e7385c4920311c988948505565de7a13a25f6fdacedcc01bc2accc02a91e4b1066bdbd11c57a889f5c7a1ea67aa56
ssdeep: 24576:X+c2geer5uOtYYsA5VFWMWa7UTZaqdiXSp0c02uFG6dAk3xMMDyjF:Xd/7swlYTZaqdwk0c05HGils
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FF85CF13B64290F1D10919726AEA2B79EDB85FA20A34CEC7D3A4ED7C3D716B1C52721C
sha3_384: c01f0d870cdb822d01ade50bce97acc50128e84a1d4d01f77fe6d84cd6932feffe551991df77a0686d1854b563ab35e6
ep_bytes: 558bec6aff68c8b659006870fe490064
timestamp: 2012-05-13 10:43:34

Version Info:

FileVersion: 1.0.0.0
FileDescription: 单个微博自动转发
ProductName: 单转
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 单个微博自动转发
Translation: 0x0804 0x04b0

Zusy.482041 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lKW0
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.482041
FireEyeGeneric.mg.52d79d882e8ecb25
SkyhighBehavesLike.Win32.Generic.tc
ALYacGen:Variant.Zusy.482041
Cylanceunsafe
SangforTrojan.Win32.Agent.V7l6
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
ArcabitTrojan.Zusy.D75AF9
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Flystudio-9943951-0
BitDefenderGen:Variant.Zusy.482041
AvastWin32:MalwareX-gen [Trj]
RisingDownloader.AdLoad!8.D1 (CLOUD)
SophosGeneric Reputation PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Zusy.482041
TrendMicroTROJ_GEN.R002C0WIS23
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Zusy.482041 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/DelfInject.GE.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumWorm.Win32.Dropper.RA@1qraug
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.1GX9Q8C
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5489364
McAfeeArtemis!52D79D882E8E
MAXmalware (ai score=100)
VBA32BScope.Trojan.Valcaryx
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WIS23
IkarusTrojan-GameThief.Win32.OnLineGames
MaxSecureTrojan.Kolovorot.in
FortinetW32/CoinMiner.PHP!tr
BitDefenderThetaGen:NN.ZexaF.36608.Wr0@a05vfhdb
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.5de7ca
DeepInstinctMALICIOUS

How to remove Zusy.482041?

Zusy.482041 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment