Malware

Zusy.525018 removal

Malware Removal

The Zusy.525018 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.525018 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.525018?


File Info:

name: 24DBF448463CA9578F03.mlw
path: /opt/CAPEv2/storage/binaries/0f8d26912e91928b93574d56d8cb1038aca87b9b63728c7900d3dd2cbdb09ce6
crc32: D3B643E5
md5: 24dbf448463ca9578f038dfca352ba8e
sha1: a216f15db57d123ebdd1670f8015e294ea898367
sha256: 0f8d26912e91928b93574d56d8cb1038aca87b9b63728c7900d3dd2cbdb09ce6
sha512: efb53a15fb4cf6ccd2a98e224fdd44fa780b87b89ad32c10f299ee39f45943efe87f5984c9e8f07abaff2a84813c77e848171429f6b106f44dfb8b84e3cd470a
ssdeep: 3072:sEh1pcoVOCqrCD3tQOE82q+Blvnqnviu8:sEioQGD3O8B+BlPqnviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T123049F628970BB13E951093417E06BFB801D3C2F4BE502097CAEDA5F3763D9A349FA42
sha3_384: f73f74b199b9f317603bccee9de5782e3c457c85a1f9af71793b2e09897d36e0bffb4c9460cb1f199ef1d4f512cc660c
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Zusy.525018 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.525018
CAT-QuickHealTrojan.MuldVMF.S21469993
SkyhighBehavesLike.Win32.Generic.ct
McAfeeGenericRXHC-SS!24DBF448463C
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
Cybereasonmalicious.db57d1
ArcabitTrojan.Zusy.D802DA
VirITTrojan.Win32.VBUCornT.DRP
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.FNGV
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Midie-6847892-0
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Zusy.525018
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.VB.ko
TACHYONTrojan/W32.VB-Agent.188468.C
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Zusy.525018
EmsisoftGen:Variant.Zusy.525018 (B)
IkarusTrojan.Crypt
JiangminTrojan.VB.aqyg
VaristW32/VB_Troj.J.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Wacatac.b
Kingsoftmalware.kb.a.999
MicrosoftTrojanDropper:Win32/Muldrop.V!MTB
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.C
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R603325
Acronissuspicious
BitDefenderThetaAI:Packer.6BE66E721F
MAXmalware (ai score=85)
Cylanceunsafe
RisingTrojan.VBClone!1.E032 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Zusy.525018?

Zusy.525018 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment