Malware

Zusy.514538 removal

Malware Removal

The Zusy.514538 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.514538 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.514538?


File Info:

name: 04A355ED70B5EE5918B0.mlw
path: /opt/CAPEv2/storage/binaries/dc2efc560a1a324957b7d107504423766c3fc3092cb25b679bd00dcaf60712ca
crc32: 19EA690F
md5: 04a355ed70b5ee5918b0075fdb51f0e0
sha1: 1d219b86a6bd080d2663061d4882bed46746192d
sha256: dc2efc560a1a324957b7d107504423766c3fc3092cb25b679bd00dcaf60712ca
sha512: 2fe4d006b301f7c6a359f5884a6b4a499362d806a34ceb1716a1e5c06e8b2fa07fcb07424fddd52e9961fd77c9f778447d1123ea4ef37703c0780484b8c49f08
ssdeep: 6144:3SKQRY21o7g11injeMQFsQxkvf4aVUI8O3L+:iKQH27iSeMq5baVZ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1BB8439C0560381B7CCC056F67FB52B3A4E3029B06BB1ADCB16C9E98999E758F7331586
sha3_384: 082d2e3a805ba97cd76ef5694bca68a9a01e4bf4d892a292b7f91ca1e4a294fefff43e2390deb9b6a9147b97c6532ece
ep_bytes: e803750000e9a4feffff3b0d90ce4500
timestamp: 2023-10-28 05:05:53

Version Info:

0: [No Data]

Zusy.514538 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Zusy.514538
ALYacGen:Variant.Zusy.514538
VIPREGen:Variant.Zusy.514538
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Zusy.514538
ArcabitTrojan.Zusy.D7D9EA
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.GPLS
CynetMalicious (score: 100)
APEXMalicious
KasperskyVHO:Backdoor.Win32.Agent.gen
RisingBackdoor.Agent!8.C5D (TFE:1:awEZsfVC2cS)
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.04a355ed70b5ee59
EmsisoftGen:Variant.Zusy.514538 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/Zbot.AC.gen!Eldorado
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.GenKryptik
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmVHO:Backdoor.Win32.Agent.gen
GDataGen:Variant.Zusy.514538
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5532928
DeepInstinctMALICIOUS
Cylanceunsafe
IkarusTrojan-Spy.Cinoshi
AVGWin32:PWSX-gen [Trj]
AvastWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Zusy.514538?

Zusy.514538 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment