Malware

How to remove “Zusy.482832”?

Malware Removal

The Zusy.482832 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.482832 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.482832?


File Info:

name: CB686EEE3FC4BA02E0BA.mlw
path: /opt/CAPEv2/storage/binaries/d5366415f56f5ea671f5437e3ed9dcfb69c04038749b82987bf10d53a2b4e03e
crc32: CB4BF8B3
md5: cb686eee3fc4ba02e0bae73b566ab782
sha1: bd79fb48be6fad24e9f21ed4ac2e59c5a436e8b6
sha256: d5366415f56f5ea671f5437e3ed9dcfb69c04038749b82987bf10d53a2b4e03e
sha512: cac37b75a1f41b83ff6e99f2ecd9bf8f18aac89527ee4f4c123ed64fb6282508f139ec938d4db04fbe269ed883e48189b140f8f046d6bdba061804958958e922
ssdeep: 6144:TeBHOJT05N+vRGyFCvkNGKIK8rxVhaAz6FY9GBLQmKjX:LlCvkN3ITrxmFGGBLQmK
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15C344A22E25A85BEF7B98CB95771AC5425F230C821C1268BB1CD3E290F1C75FAD1B9D4
sha3_384: 37cd4d60e88fe1f5383d7afaa7171c003ac08c469059283e2e8a7f789c392aad8084970bcaadbf39af64c072cece0cd4
ep_bytes: e8db260000e9a4feffff8bff558bec8b
timestamp: 2023-08-18 10:10:38

Version Info:

Comments: Shrubby predestination bitch retaliates inquorate cocain
CompanyName: Blowpipes
FileDescription: Enumerable escalated rediscovered
FileVersion: 5.260.200.4
InternalName: Denture
LegalCopyright: Copyright © Chilly redeposition
LegalTrademarks: Disclaimer depressive harshly farad remittances
OriginalFilename: Dissociating
ProductName: Castor
ProductVersion: 5.260.200.4
Translation: 0x081a 0x081a

Zusy.482832 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
MicroWorld-eScanGen:Variant.Zusy.482832
FireEyeGeneric.mg.cb686eee3fc4ba02
ALYacGen:Variant.Zusy.482832
Cylanceunsafe
ZillyaTrojan.Stealer.Win32.138220
SangforInfostealer.Win32.Kryptik.Vmi7
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Kryptik.3204a11c
K7GWTrojan ( 005aa3451 )
K7AntiVirusTrojan ( 005aa3451 )
VirITTrojan.Win32.GenusT.DPQR
CyrenW32/Kryptik.KKK.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HUKP
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
BitDefenderGen:Variant.Zusy.482832
NANO-AntivirusTrojan.Win32.Stealer.jywjqx
AvastWin32:PWSX-gen [Trj]
TencentMalware.Win32.Gencirc.13ed5607
EmsisoftGen:Variant.Zusy.482832 (B)
F-SecureTrojan.TR/Crypt.Agent.bjgpe
DrWebTrojan.PWS.Stealer.37363
VIPREGen:Variant.Zusy.482832
TrendMicroTrojanSpy.Win32.REDLINE.YXDHUZ
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
Trapminemalicious.high.ml.score
SophosTroj/Steal-DQZ
IkarusTrojan.Agent
GDataGen:Variant.Zusy.482832
JiangminTrojanSpy.Stealer.aieu
AviraTR/Crypt.Agent.bjgpe
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Kryptik.hsyn
ArcabitTrojan.Zusy.D75E10
ZoneAlarmHEUR:Trojan-Spy.Win32.Stealer.gen
MicrosoftTrojan:Win32/RedLineStealer.N!MTB
GoogleDetected
AhnLab-V3Spyware/Win.Hpdyre.R492527
McAfeeArtemis!CB686EEE3FC4
VBA32BScope.Backdoor.Agent
MalwarebytesTrojan.Crypt
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.REDLINE.YXDHUZ
RisingBackdoor.Agent!8.C5D (TFE:5:yehDq6lK8IB)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.73793603.susgen
FortinetW32/Kryptik.HUIM!tr
BitDefenderThetaGen:NN.ZexaF.36662.oq0@aOhAU8mi
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.8be6fa
DeepInstinctMALICIOUS

How to remove Zusy.482832?

Zusy.482832 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment