Malware

Should I remove “Zusy.5304 (B)”?

Malware Removal

The Zusy.5304 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.5304 (B) virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Zusy.5304 (B)?


File Info:

name: 0A76C397F6D4D997E5CF.mlw
path: /opt/CAPEv2/storage/binaries/0fac3dfa882cb939bda8b54f7d14e77ee554cc502e24e1e7303d4c403319be9e
crc32: 36472062
md5: 0a76c397f6d4d997e5cf66b34521c84d
sha1: 78b49b0c8dcc42bdcfb6e2006817cec2a206e7b6
sha256: 0fac3dfa882cb939bda8b54f7d14e77ee554cc502e24e1e7303d4c403319be9e
sha512: c5200f10d2060742e65733a4bb34670363f5b5d328ad255e550d8c53b2968fa26fbd9d42413c3fa62af5eb9846cdfb16c68a5a610f26f109d3230a0310b411d4
ssdeep: 12288:M63tEeWo4ofWFKrU4mGct26T+uJ5P7l0wqx5DO3HQUF:z3+eWxoIKut2GTl70x5SXQUF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A3E49E22F68740F7E95130B054BADB725939BA39073A5AD3BBE03D395E201C16A3935E
sha3_384: 2a7f231e7ff52461311da7a480f2de07883d28eb99b1545bde00969eb6b3ffe70174185cdeb0eba25efb79d5b6ed8667
ep_bytes: e8e89c0000e989feffff8bff558bec83
timestamp: 2011-01-18 14:44:33

Version Info:

0: [No Data]

Zusy.5304 (B) also known as:

BkavW32.FamVT.PizkaPB.Trojan
LionicTrojan.Win32.Autoit.lHSt
DrWebTrojan.MulDrop9.5793
MicroWorld-eScanGen:Variant.Zusy.5304
FireEyeGeneric.mg.0a76c397f6d4d997
CAT-QuickHealTrojan.Babnock.AZ5
McAfeeGenericRXAA-AA!0A76C397F6D4
CylanceUnsafe
ZillyaTrojan.AutoIT.Win32.159493
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 00468d321 )
AlibabaTrojan:Win32/Babonock.37d
K7GWTrojan ( 00468d321 )
Cybereasonmalicious.7f6d4d
BitDefenderThetaGen:NN.ZexaF.34646.PqX@amSO1Hni
VirITBackdoor.RBot.TM
CyrenW32/FakeFolder.K.gen!Eldorado
SymantecW32.Babonock
Elasticmalicious (high confidence)
ESET-NOD32Win32/Autoit.HG
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Zusy-6804501-0
KasperskyTrojan-Spy.Win32.AutoIt.p
BitDefenderGen:Variant.Zusy.5304
NANO-AntivirusTrojan.Win32.TrjGen.brmdeh
SUPERAntiSpywareTrojan.Agent/Gen-Autoit
AvastAutoIt:Agent-DG [Trj]
TencentTrojan.Win32.Autoit.b
Ad-AwareGen:Variant.Zusy.5304
TACHYONTrojan/W32.Agent.680455.D
EmsisoftGen:Variant.Zusy.5304 (B)
ComodoTrojWare.Win32.Spy.Babonock.DQ@6lkp66
F-SecureTrojan.TR/AutoIt.frngh
BaiduWin32.Trojan.Agent.acd
VIPREGen:Variant.Zusy.5304
TrendMicroMal_OtorunP
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
SophosMal/Generic-S
IkarusWorm.Win32.AutoIt
GDataWin32.Trojan.PSE.1ORIMTT
JiangminPacked.Katusha.arca
WebrootW32.Infector.Virut.Gen
GoogleDetected
AviraTR/AutoIt.frngh
ArcabitTrojan.Zusy.D14B8
ZoneAlarmTrojan-Spy.Win32.AutoIt.p
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win.AutoIt.C5148022
VBA32Trojan.AHK
ALYacGen:Variant.Zusy.5304
MAXmalware (ai score=83)
MalwarebytesGeneric.Trojan.Malicious.DDS
TrendMicro-HouseCallMal_OtorunP
RisingWorm.Win32.Autorun.uav (CLASSIC)
MaxSecureTrojan.Malware.1972078.susgen
FortinetW32/AutoIt.HG!worm
AVGAutoIt:Agent-DG [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.5304 (B)?

Zusy.5304 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment