Malware

Zusy.524305 removal instruction

Malware Removal

The Zusy.524305 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.524305 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Zusy.524305?


File Info:

name: FF214DDBCF6CB1115D28.mlw
path: /opt/CAPEv2/storage/binaries/a7fab818ae4582e480b7a29c521f3c65c2436c9381fddc22eeb58559a794a838
crc32: 92DAE7E2
md5: ff214ddbcf6cb1115d2842791c5002bb
sha1: 1aefb01770663c27e749ddf82822e8407e886148
sha256: a7fab818ae4582e480b7a29c521f3c65c2436c9381fddc22eeb58559a794a838
sha512: 1b34357c563f9ea50592b0ea66822cc19ae5f831cf4e64280fa5fc369b2ab4c4c6d6e4b6b050dd998714667eed2a0d164313c177900d459dbf01361211255cdc
ssdeep: 24576:MP/aKiulG+a43L5V2mbUt4M4l6ufAnqDn61zEmsSphwcAS:M4+75jll9rwPsSpTAS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D895BE22F6E380F1D695257108AB7736EA75AB464B208FC3A374DD3D6C326819F37219
sha3_384: 09681a58cb7b1079e2b497a511fbbea0b282e5f062b5c15f189947df04bf96c1bc3aa62b92366e170b2a620816ef7db9
ep_bytes: 558bec6aff6868c65700687419480064
timestamp: 2013-04-27 15:05:22

Version Info:

0: [No Data]

Zusy.524305 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Kolovorot.lpUa
ElasticWindows.Generic.Threat
MicroWorld-eScanGen:Variant.Zusy.524305
ClamAVWin.Malware.Flystudio-9891119-0
FireEyeGeneric.mg.ff214ddbcf6cb111
CAT-QuickHealTrojan.Generic.2919
SkyhighBehavesLike.Win32.Dropper.th
McAfeeArtemis!FF214DDBCF6C
Cylanceunsafe
ZillyaAdware.Agent.Win32.185395
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaAdWare:Win32/FlyStudio.a23b03a1
BitDefenderThetaGen:NN.ZexaF.36680.0rZ@aCafS!k
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FlyStudio.HackTool.A potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.Agent.gen
BitDefenderGen:Variant.Zusy.524305
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10bf7b4e
EmsisoftGen:Variant.Zusy.524305 (B)
BaiduWin32.Trojan.Hooker.b
F-SecureTrojan:W32/DelfInject.R
DrWebTrojan.Rootkit.22072
VIPREGen:Variant.Zusy.524305
TrendMicroTROJ_GEN.R002C0GKP23
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.15IBL0F
GoogleDetected
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLRiskWare[RiskTool]/Win32.Hooker
XcitiumWorm.Win32.Dropper.RA@1qraug
ArcabitTrojan.Zusy.D80011
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.gen
MicrosoftTrojan:Win32/Wacatac.A!ml
VaristW32/Trojan.CLL.gen!Eldorado
AhnLab-V3Adware/Win.Agent.R625137
VBA32BScope.Trojan.Bitrep
ALYacGen:Variant.Zusy.524305
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0GKP23
RisingTrojan.StartPage!8.B (TFE:5:cdnWxdkSboQ)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.770663
DeepInstinctMALICIOUS

How to remove Zusy.524305?

Zusy.524305 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment