Malware

About “Zusy.499310” infection

Malware Removal

The Zusy.499310 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.499310 virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Binary file triggered YARA rule

How to determine Zusy.499310?


File Info:

name: E80E94F321B24F255035.mlw
path: /opt/CAPEv2/storage/binaries/01fe0ece57c7b29476255e84cb944c3d5f855771bda1a6bda68caba4e5523370
crc32: 388FE507
md5: e80e94f321b24f25503508ed6c3c2ada
sha1: e1e2aedbf900b18d28c225315dffddb128da9fc0
sha256: 01fe0ece57c7b29476255e84cb944c3d5f855771bda1a6bda68caba4e5523370
sha512: 64bc57ec10d349ed222bf2133e5807fdfe9669949c63aaecbcefbc4a53894d12d1a4b42ad44d2e93ad9f84dd64557ace8dc94244fd7e0769d5af9cc5097a5a84
ssdeep: 48:6Zlvs9bNV199Lx85pIJojAE/c+lsF0CHdPzFVRHslW3dP6PPPcA9da3OulOa3qqB:W+NV19i9chHdPoWtP6PXf3apwKyzNt
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T139C18495B7F84329F17A4B345CF29302BB76F8537A62878E28D412496C71B008C23B76
sha3_384: c66a6a14c53b27822a70133df57f034815994dd232fe67c88882c3321435ab5de30d258aa1a293dc4e712885211f5f09
ep_bytes: ff250020400000000000000000000000
timestamp: 2024-04-30 03:21:15

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: mousefix.exe
LegalCopyright:
OriginalFilename: mousefix.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Zusy.499310 also known as:

BkavW32.AIDetectMalware.CS
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.499310
FireEyeGeneric.mg.e80e94f321b24f25
ALYacGen:Variant.Zusy.499310
MalwarebytesTrojan.Downloader.MSIL.Generic
SangforDropper.Msil.Dorifel.Vin3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Tiny_AGen.AZ
APEXMalicious
KasperskyHEUR:Trojan-Dropper.MSIL.Dorifel.gen
BitDefenderGen:Variant.Zusy.499310
AvastWin32:DropperX-gen [Drp]
TencentMsil.Trojan-Dropper.Dorifel.Lzfl
EmsisoftGen:Variant.Zusy.499310 (B)
VIPREGen:Variant.Zusy.499310
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
MAXmalware (ai score=88)
GoogleDetected
Kingsoftmalware.kb.c.952
ArcabitTrojan.Zusy.D79E6E
ZoneAlarmHEUR:Trojan-Dropper.MSIL.Dorifel.gen
GDataGen:Variant.Zusy.499310
AhnLab-V3Dropper/Win.Generic.C5512139
BitDefenderThetaGen:NN.ZemsilCO.36804.am0@aaFhYVb
RisingDropper.Dorifel!8.31E (CLOUD)
IkarusTrojan-Downloader.MSIL.Tiny
AVGWin32:DropperX-gen [Drp]
DeepInstinctMALICIOUS
alibabacloudTrojan[dropper]:MSIL/Tiny_AGen.AO

How to remove Zusy.499310?

Zusy.499310 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment