Malware

Zusy.519138 malicious file

Malware Removal

The Zusy.519138 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.519138 virus can do?

  • Uses Windows utilities for basic functionality
  • Authenticode signature is invalid
  • Creates known Fynloski/DarkComet mutexes

How to determine Zusy.519138?


File Info:

name: D6E582AA6C8B041A8D5D.mlw
path: /opt/CAPEv2/storage/binaries/e2ca122f94168bf051fd214ef5795d5b935dce127a7b8d25587ae389c88c9a47
crc32: 04831705
md5: d6e582aa6c8b041a8d5d432fd743bcfb
sha1: f1cf8013cd7d3672d8320227628d514e217cce87
sha256: e2ca122f94168bf051fd214ef5795d5b935dce127a7b8d25587ae389c88c9a47
sha512: 0ca85e195d982d7f795eea72e177df989fce2590d163a693305777a737873084653bde8fa3a5b4b6dc0b385efd26497bb092e98450e959c026383018ec0637a4
ssdeep: 6144:ze0VY+U3YJ7PUUn/+Iv/gphR2WIXatAO1mZ:zdTU3S7PfjpXat2Z
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DC247C00B5E2C472D472153009F4DBB54A3EBD210B65EAEFA7E41B7D8E302C19A35B7A
sha3_384: 88984d9906cc606db436db061aa0c49a7a219ab3df3af3d2a7aa2c4df42beff51857841981eb4e7fba5d478ca1684a17
ep_bytes: e884040000e974feffffe98444000083
timestamp: 2023-11-09 03:36:55

Version Info:

0: [No Data]

Zusy.519138 also known as:

LionicTrojan.Win32.KeyLogger.l!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.519138
FireEyeGeneric.mg.d6e582aa6c8b041a
SkyhighBehavesLike.Win32.NetLoader.dh
ALYacGen:Variant.Zusy.519138
Cylanceunsafe
VIPREGen:Variant.Zusy.519138
SangforSpyware.Win32.KeyLogger.Vnb1
K7AntiVirusTrojan ( 005ade8e1 )
AlibabaTrojanSpy:Win32/KeyLogger.c3724702
K7GWTrojan ( 005ade8e1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.AFZV
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.Win32.KeyLogger.gen
BitDefenderGen:Variant.Zusy.519138
TencentTrojan-Spy.Win32.KeyLogger.ke
EmsisoftGen:Variant.Zusy.519138 (B)
F-SecureTrojan.TR/Agent.xecif
ZillyaTrojan.Agent.Win32.3785478
TrendMicroTROJ_GEN.R002C0XKT23
SophosMal/Generic-S
JiangminTrojan.Generic.hruch
VaristW32/Agent.HTA.gen!Eldorado
AviraTR/Agent.xecif
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Zusy.D7EBE2
ZoneAlarmHEUR:Trojan-Spy.Win32.KeyLogger.gen
GDataGen:Variant.Zusy.519138
GoogleDetected
AhnLab-V3Backdoor/Win.DARKCOMET.R621501
McAfeeRDN/Generic PWS.y
TACHYONTrojan-Dropper/W32.Keylogger.217600.E
MalwarebytesBackdoor.DarkComet
TrendMicro-HouseCallTROJ_GEN.R002C0XKT23
RisingTrojan.Generic@AI.100 (RDML:h1FdOZjWFNKTR0TtWWGbrA)
IkarusTrojan.Win32.Agent
FortinetW32/Agent.AFZV!tr
BitDefenderThetaGen:NN.ZexaF.36680.nqW@a83FJ8o
PandaTrj/Chgt.AD
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Zusy.519138?

Zusy.519138 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment