Malware

Zusy.496207 malicious file

Malware Removal

The Zusy.496207 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.496207 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.496207?


File Info:

name: 1E1D5F93374245CFC32E.mlw
path: /opt/CAPEv2/storage/binaries/9c6f0f3c3b62090948d1b6053ae238c920f5ca4ef341275e344fd5f54fac8112
crc32: CC94A022
md5: 1e1d5f93374245cfc32e9b1b97eb7364
sha1: 94faabf15b60a2bf2d739fa014856bb4c5f1290f
sha256: 9c6f0f3c3b62090948d1b6053ae238c920f5ca4ef341275e344fd5f54fac8112
sha512: a79649b6ef65147f37dae8aecc42ba63ed177c73c55b626da570eb156d42bb05142d014579869061d8ab025f65bd5c7d110c812d8cd31404139f81ad43e3c554
ssdeep: 98304:x9ncHzj3b8Nk0kiMmBCV/hopV7adTMKoCFWv30B:x9nqL8Nk0kWBpqTMDv3I
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C7262323A944C065E2E38D719CAD7A691C7DFC086101AC3722743E3D79BB7827DA6E17
sha3_384: 20f04fb04128b8de5ffeecf689856705a2f351de611719f93b84a716d9ab10ba51602d149f5f45753553b7aef4db0dff
ep_bytes: 68885c4200e8f0ffffff000000000000
timestamp: 2023-10-04 14:40:37

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Home Office
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Web Browser
OriginalFilename: Web Browser.exe

Zusy.496207 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Androm.m!c
Elasticmalicious (high confidence)
DrWebBackDoor.QuasarNET.3
MicroWorld-eScanGen:Variant.Zusy.496207
FireEyeGeneric.mg.1e1d5f93374245cf
SkyhighBehavesLike.Win32.Trojan.rc
ALYacGen:Variant.Zusy.496207
Cylanceunsafe
ZillyaTrojan.Inject.Win32.344064
SangforSuspicious.Win32.Save.vb
AlibabaTrojan:Win32/Injector.c86d405c
K7GWTrojan ( 00573e2f1 )
K7AntiVirusTrojan ( 00573e2f1 )
Paloaltogeneric.ml
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DQCV
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002C0WD124
AvastWin32:RATX-gen [Trj]
KasperskyBackdoor.Win32.Androm.vqqf
BitDefenderGen:Variant.Zusy.496207
NANO-AntivirusTrojan.Win32.Inject.kbvutf
TencentMalware.Win32.Gencirc.10bf7430
EmsisoftGen:Variant.Zusy.496207 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Zusy.496207
TrendMicroTROJ_GEN.R002C0WD124
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
JiangminTrojan.Generic.hrolu
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/ABRisk.DJPN-2324
Antiy-AVLTrojan/Win32.Injector
KingsoftWin32.Trojan.Generic.a
MicrosoftBackdoor:Win32/Fynloski
ArcabitTrojan.Zusy.D7924F
ZoneAlarmBackdoor.Win32.Androm.vqqf
GDataGen:Variant.Zusy.496207
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.R633841
McAfeeArtemis!1E1D5F933742
VBA32TScope.Trojan.VB
MalwarebytesTrojan.Injector
PandaTrj/Chgt.AD
RisingTrojan.Injector!8.C4 (TFE:4:fCFxgeaJTRK)
MAXmalware (ai score=88)
MaxSecureTrojan.Malware.216104597.susgen
FortinetW32/Injector.CRKZ!tr
AVGWin32:RATX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan[dropper]:Win/Zusy

How to remove Zusy.496207?

Zusy.496207 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment