Malware

Zusy.487806 malicious file

Malware Removal

The Zusy.487806 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.487806 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.487806?


File Info:

name: AA606401BB9BBB27B187.mlw
path: /opt/CAPEv2/storage/binaries/0d38ce36e881100490c7ee082c0984515ae310672b330961327697611cc1a058
crc32: FC78FEA5
md5: aa606401bb9bbb27b187ae1506b28b69
sha1: f7e8889cdfc5953be2a08569d06536d3dfd7b7ad
sha256: 0d38ce36e881100490c7ee082c0984515ae310672b330961327697611cc1a058
sha512: 3a9ffc1e30f7de9e32cd2e0a4a169e209f65179a570a034bb3b34870803fbad63b6cc2a36a6f9225097df94f3306537b33893bdb52d137b922f0e9187f55fc6a
ssdeep: 24576:YiuBtZdsiHnMxiSUl+NSNF4c0HubZkWMw5p1YrFeCEKi:vuBfdsiHnCzUGoSBHK/MRY/N
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T17F350200FD544472F2AB153114D68E6BEE2DA6628371CAFFB784987D4F222C1E5B1DB2
sha3_384: ba5ffae8bf32752976591e4509ac1c55443820c24f11c62fa98e27b586e29a3c4e6562622e9815a40b755f4585e96432
ep_bytes: e898070000e974feffff558bec8b4508
timestamp: 2023-09-13 12:27:56

Version Info:

0: [No Data]

Zusy.487806 also known as:

BkavW32.AIDetectMalware
CynetMalicious (score: 100)
MalwarebytesTrojan.Injector
VIPREGen:Variant.Zusy.487806
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Zusy.487806
Cybereasonmalicious.cdfc59
CyrenW32/Kryptik.KQV.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HTQR
APEXMalicious
KasperskyHEUR:Trojan-PSW.Win32.Stealerc.gen
MicroWorld-eScanGen:Variant.Zusy.487806
AvastWin32:CrypterX-gen [Trj]
EmsisoftGen:Variant.Zusy.487806 (B)
DrWebTrojan.Inject4.61027
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.aa606401bb9bbb27
SophosGeneric ML PUA (PUA)
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Sabsik
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Zusy.D7717E
ZoneAlarmVHO:Backdoor.Win32.Agent.gen
GDataGen:Variant.Zusy.487806
GoogleDetected
ALYacGen:Variant.Zusy.487806
Cylanceunsafe
PandaTrj/GdSda.A
RisingTrojan.Generic@AI.100 (RDML:XfkZEEOE+v4voIYOnRnCjg)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
BitDefenderThetaGen:NN.ZexaF.36662.czW@amwOkIfi
AVGWin32:CrypterX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Zusy.487806?

Zusy.487806 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment