Malware

Should I remove “Zusy.490439”?

Malware Removal

The Zusy.490439 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.490439 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Zusy.490439?


File Info:

name: FA32904AB78359121533.mlw
path: /opt/CAPEv2/storage/binaries/13567658a7f737d82353661a781e91ab62b5ca74d5ec790948ea3577b593e53b
crc32: DC0ED4A1
md5: fa32904ab78359121533ecb4e46270f6
sha1: 44c1fa791ddee65bc9dff1118d6f49d0d009132a
sha256: 13567658a7f737d82353661a781e91ab62b5ca74d5ec790948ea3577b593e53b
sha512: 29a222526e61f81544142205e6e7b78611731e30c96887e42276c79b3816fce21fca4469d3e482dd68e6b4a224d3452a02b25261a1b35b104c58cdd368ebe69d
ssdeep: 6144:jYBUFDxdoa8gJlLyHqS4Wct43R4fS0AlvVwSY/FMS6pfYS27vg8SCe0Vu9nKbJb5:0KFD3oa9Oh6t43RyND6vWcC3u9nafnR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B8E49E12B9F280F6C62925301CBA6B36A6769BC60B14DFC35368DE1C5E32171AD3F356
sha3_384: f6ed3e377395bce9c7b740df596e2c3cf4bf28bc220c0d0e5c543d318256d3706212cfd24392b80640010d41cd59ae68
ep_bytes: 558bec6aff6878bc4800685436450064
timestamp: 2013-03-22 12:08:46

Version Info:

0: [No Data]

Zusy.490439 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.liRL
ElasticWindows.Generic.Threat
MicroWorld-eScanGen:Variant.Zusy.490439
FireEyeGeneric.mg.fa32904ab7835912
SkyhighBehavesLike.Win32.Generic.jh
McAfeeArtemis!FA32904AB783
Cylanceunsafe
SangforTrojan.Win32.Agent.V7n9
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZexaE.36680.RqW@aaekC5eb
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
BitDefenderGen:Variant.Zusy.490439
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Zusy.490439 (B)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Zusy.490439
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.10S0A6W
GoogleDetected
VaristW32/OnlineGames.HG.gen!Eldorado
Antiy-AVLTrojan/Win32.Emotet
Kingsoftmalware.kb.a.999
XcitiumWorm.Win32.Dropper.RA@1qraug
ArcabitTrojan.Zusy.D77BC7
MicrosoftTrojan:Win32/Emotet!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.490439
MAXmalware (ai score=81)
VBA32BScope.Adware.Agent
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R002H0CKP23
RisingTrojan.Generic@AI.100 (RDML:BnXMe+VoIzaEZuNSjmGoYg)
YandexTrojan.GenAsa!eArnuyDqgl4
IkarusTrojan.Win32.Llac
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/MBRlock.AQ!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.91ddee
DeepInstinctMALICIOUS

How to remove Zusy.490439?

Zusy.490439 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment