Malware

Zusy.497532 removal instruction

Malware Removal

The Zusy.497532 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.497532 virus can do?

  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.497532?


File Info:

name: 750E6157DAA531939F98.mlw
path: /opt/CAPEv2/storage/binaries/e3f155539cdf909ab421f1b391446a4b5a995d460a80f935922f92b4d24cac79
crc32: D202E3E8
md5: 750e6157daa531939f98f13380a1f68d
sha1: 761f35560160326308ec3ae54437ea2ccd325db5
sha256: e3f155539cdf909ab421f1b391446a4b5a995d460a80f935922f92b4d24cac79
sha512: 889d30e94197001e8c5bf7918d3f00226d8d8f2ba70a7fdfb0b588cc4b40032923b6e23c078b19a1631de175cdc008e90bc253cf55f11dcd65f371c486349481
ssdeep: 24576:sLjjLhDAIP4+u9lUpEw5TYTZaqdiXSp0c02uFG6dAk3CML:sLHuMRETZaqdwk0c05HGiL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19175D133A64280B2D245353009E61B76B974BB750F318E83D792EE7E7E721B1AA7701D
sha3_384: b45a760caf8e971be5ff48d984f1f3ca9dc3d4fd7b12a45e433ea5aa1eb61b429f5772d27b3f41154b7d1ac884c23d43
ep_bytes: 558bec6aff68f8a15700682442480064
timestamp: 2012-07-17 03:20:43

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: CPA自动注册
ProductVersion: 1.0.0.0
CompanyName: MC3
LegalCopyright: 版权MC3所有 QQ473605918
Comments: CPA自动注册
Translation: 0x0804 0x04b0

Zusy.497532 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lwgJ
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.497532
FireEyeGeneric.mg.750e6157daa53193
CAT-QuickHealTrojan.Generic.8516
SkyhighBehavesLike.Win32.Generic.tc
ALYacGen:Variant.Zusy.497532
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Agent.Veka
K7AntiVirusTrojan ( 005246d51 )
BitDefenderGen:Variant.Zusy.497532
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_60% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Flystudio-9943951-0
AlibabaBackdoor:Win32/Hupigon.b134aebb
SophosGeneric Reputation PUA (PUA)
F-SecureTrojan:W32/DelfInject.R
VIPREGen:Variant.Zusy.497532
TrendMicroTROJ_GEN.R002C0PJ923
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Zusy.497532 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-47c1ea66!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumWorm.Win32.Dropper.RA@1qraug
ArcabitTrojan.Zusy.D7977C
GDataWin32.Trojan.PSE.1S437JY
GoogleDetected
AhnLab-V3Trojan/Win.EL.C5501629
BitDefenderThetaGen:NN.ZexaF.36792.Nr0@aCZRWGcb
MAXmalware (ai score=87)
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Tiggre
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0PJ923
YandexTrojan.GenAsa!xv7xmHli8xU
IkarusBackdoor.Win32.Hupigon
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.601603
AvastWin32:Evo-gen [Trj]

How to remove Zusy.497532?

Zusy.497532 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment