Malware

Zusy.525018 removal instruction

Malware Removal

The Zusy.525018 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.525018 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.525018?


File Info:

name: BB030D5C086E5192CD3B.mlw
path: /opt/CAPEv2/storage/binaries/9303980f4fcb4b04573067baaf6878d3b650ce2496bae4bfa4036dda50fbd94b
crc32: C4C9FB5C
md5: bb030d5c086e5192cd3b9ce780c28f74
sha1: fd4e8df44e8b7ec418d34efbdf54a09e56945ceb
sha256: 9303980f4fcb4b04573067baaf6878d3b650ce2496bae4bfa4036dda50fbd94b
sha512: 656c7461dba1083932e20103a0bb6d8c3392288cfa887b8555d1a45e6ccdac2a699d0e2ab039d745eedd93734ec4181359617456493a2ee7ee763137c9c10839
ssdeep: 3072:swl1AconoxqrCD3tQxEC2++alvnqnviu+:swjo7GD3nCV+alPqnviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T192048F628970BB13E951093517E06BFB801D3C2F4BE506097CADDA5F3763D9A349FA42
sha3_384: 2ea4d29c12fc487c087ca4dde5acf386bcd6fce8105e8a3d4de1c10f7af1a27cf04dd1217ef5ce3bc52260eb311eca52
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Zusy.525018 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VB.tsbh
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.525018
ClamAVWin.Malware.Midie-6847892-0
FireEyeGeneric.mg.bb030d5c086e5192
CAT-QuickHealTrojan.MuldVMF.S21469993
SkyhighBehavesLike.Win32.Generic.ct
ALYacGen:Variant.Zusy.525018
Cylanceunsafe
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Muldrop.329
K7GWTrojan ( 005690671 )
K7AntiVirusTrojan ( 005690671 )
BitDefenderThetaAI:Packer.6BE66E721F
VirITTrojan.Win32.VBUCornT.DRP
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FNGV
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Zusy.525018
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.VB.ko
TACHYONTrojan/W32.VB-Agent.188471.C
EmsisoftGen:Variant.Zusy.525018 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Zusy.525018
TrendMicroTROJ_GEN.R002C0DA824
SophosMal/VB-AQT
IkarusTrojan.Crypt
JiangminTrojan.VB.aqyg
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Wacatac.b
Kingsoftmalware.kb.a.999
MicrosoftTrojanDropper:Win32/Muldrop.V!MTB
ArcabitTrojan.Zusy.D802DA
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.B
VaristW32/VB_Troj.J.gen!Eldorado
AhnLab-V3Trojan/Win.Generic.R603325
Acronissuspicious
McAfeeGenericRXHC-SS!BB030D5C086E
MAXmalware (ai score=80)
VBA32SScope.Trojan.VB
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DA824
RisingTrojan.VBClone!1.E032 (CLASSIC)
YandexTrojan.VB!ZwkpCbix1X4
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
Cybereasonmalicious.44e8b7
DeepInstinctMALICIOUS

How to remove Zusy.525018?

Zusy.525018 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment