Malware

Should I remove “Zusy.486911”?

Malware Removal

The Zusy.486911 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.486911 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Zusy.486911?


File Info:

name: EFC8D330131B52C44D46.mlw
path: /opt/CAPEv2/storage/binaries/8bb2f80f6dcf88b476ddd8752a073e9ddfccffa80666c21f7294d0ca5086bd04
crc32: DC786E2F
md5: efc8d330131b52c44d46ae0a3cb5b24a
sha1: b1b02f59b35fefcf8da47e26008bb01e828d1c09
sha256: 8bb2f80f6dcf88b476ddd8752a073e9ddfccffa80666c21f7294d0ca5086bd04
sha512: ff68fda59091ecc63098e3ef165e46c1c0f42c1e120019159e98647cafaf7c07857356cc27facfc63c326e1a1c240646524a880ea8c9349c8e5e04469da1325c
ssdeep: 24576:S5lJmGN9aMmc4RtdByk15eURL1GQQaZQH:S5l3E5tdFJhzQaZQH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FC457C23F56380F1E6146AB112761339BEB887951EB5CE83D3F0DD766C72961932B20E
sha3_384: b94d5d9e81d89a8a0cae1b9be32ae8d072b8817ec76aa0abb05754e4242577232c3ddc3c93a801c44590b002a7d3ec13
ep_bytes: 558bec6aff6898e64f0068d4ad4c0064
timestamp: 2012-03-06 02:45:01

Version Info:

FileVersion: 11.5.11.5
FileDescription: 11.5.15
ProductName: 11.5.15
ProductVersion: 11.5.11.5
CompanyName: SKY
LegalCopyright: SKY 版权所有
Comments: 11.5.15
Translation: 0x0804 0x04b0

Zusy.486911 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.FlyStudio.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.486911
FireEyeGeneric.mg.efc8d330131b52c4
SkyhighBehavesLike.Win32.Generic.th
ALYacGen:Variant.Zusy.486911
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_60% (W)
ArcabitTrojan.Zusy.D76DFF
BitDefenderThetaGen:NN.ZexaF.36608.ir0@aeOAsYhb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/FlyStudio.HackTool.A potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.486911
AvastWin32:TrojanX-gen [Trj]
SophosMal/Generic-S
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Zusy.486911
TrendMicroTROJ_GEN.R002C0PIO23
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Zusy.486911 (B)
IkarusBackdoor.Win32.BlackHole
WebrootW32.Gen.Bt
VaristW32/Trojan.CLL.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
MicrosoftTrojan:Win32/Emotet!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.FlyStudio.I
GoogleDetected
AhnLab-V3Malware/Win.VR.C5494182
McAfeeGenericRXAO-VR!EFC8D330131B
MAXmalware (ai score=89)
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R002C0PIO23
RisingTrojan.Generic@AI.100 (RDML:oXUGnTx0HXLnXZT2hcxPGQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/QQTen.NAN!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.9b35fe
DeepInstinctMALICIOUS

How to remove Zusy.486911?

Zusy.486911 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment