Malware

Zusy.525216 malicious file

Malware Removal

The Zusy.525216 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.525216 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Zusy.525216?


File Info:

name: 880C7BF12BA6B7EBAA6B.mlw
path: /opt/CAPEv2/storage/binaries/784bf6adb4d32a8742b7c99b80b73b6e5a1e04eb4951495eb43caef9cf6904e1
crc32: A4361B4D
md5: 880c7bf12ba6b7ebaa6bf07968228c56
sha1: 9f3c04b1597ba71d305847dfd68d8142267ad077
sha256: 784bf6adb4d32a8742b7c99b80b73b6e5a1e04eb4951495eb43caef9cf6904e1
sha512: 669e7c4bc03dd0a0a115e6dcf05515ca0d2f35522d2d7a83c713f0206bf59451da4469b8160ce83b8bc43f56da5136b30c73400af8eb2a04b0341118e0b7b681
ssdeep: 196608:53M9wc5gjGQMQgRoXvCt95AnlGqXh9UN+0c+w4Vy8SQ2GNiw6P:4wSgu/oXiGF7U0ofAw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12DC623537BA380F0D59B15301677AB3EDB74AF450A24CE9393D0EE681D73592AE2730A
sha3_384: b82e63f40b2397c42636c1bcac903cb001db71f92e2f954582b49056f22cb6320bdeb390bbbcfefe0b37baee8e2f73d1
ep_bytes: 00e84c2bcefff78100d627cdfe7eb95a
timestamp: 2013-03-01 02:02:17

Version Info:

0: [No Data]

Zusy.525216 also known as:

BkavW32.Common.1C0DC610
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Zusy.525216
FireEyeGeneric.mg.880c7bf12ba6b7eb
SkyhighBehavesLike.Win32.Glupteba.vc
McAfeeArtemis!880C7BF12BA6
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005ae9381 )
AlibabaTrojan:Win32/GenKryptik.70afaf99
K7GWTrojan ( 005ae9381 )
CrowdStrikewin/malicious_confidence_90% (W)
ArcabitTrojan.Zusy.D803A0
BitDefenderThetaGen:NN.ZexaF.36608.@BZ@aelFAnj
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.GQIY
CynetMalicious (score: 100)
ClamAVWin.Malware.Flystudio-9752414-0
BitDefenderGen:Variant.Zusy.525216
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:Evo-gen [Trj]
RisingTrojan.Kryptik!8.8 (CLOUD)
EmsisoftGen:Variant.Zusy.525216 (B)
F-SecureTrojan.TR/Kryptik.deudb
VIPREGen:Variant.Zusy.525216
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Black
VaristW32/VBInject.L.gen!Eldorado
AviraTR/Kryptik.deudb
Antiy-AVLTrojan/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.525216
GoogleDetected
ALYacGen:Variant.Zusy.525216
MAXmalware (ai score=84)
VBA32Trojan.Refroso
MalwarebytesGeneric.Malware.AI.DDS
ZonerProbably Heur.ExeHeaderL
TrendMicro-HouseCallTROJ_GEN.R002H0CKS23
TencentMalware.Win32.Gencirc.13fae6cd
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.GQIY!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.1597ba
DeepInstinctMALICIOUS

How to remove Zusy.525216?

Zusy.525216 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment