Malware

Zusy.531379 removal instruction

Malware Removal

The Zusy.531379 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.531379 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Zusy.531379?


File Info:

name: BEDD0C6AECE50F4AA97E.mlw
path: /opt/CAPEv2/storage/binaries/ebb1aafffe241803123b462e3712054273601ac32fb5486eebfddafac8036ba9
crc32: EEAF2E98
md5: bedd0c6aece50f4aa97ede6c9eb760ad
sha1: 2ba5e6e32df109173867f859a87df395ebe70d51
sha256: ebb1aafffe241803123b462e3712054273601ac32fb5486eebfddafac8036ba9
sha512: 55a097dc123221fdda1a67597068b43688ab930261f052fe08e211b47ab13b9d49482a4eb0feb044a3553fb57dcf7fb5e085fc7266832be37939c9b13826d44d
ssdeep: 768:rnBEEKdlgF9xRtaCZMPP3lLuzZPKqwlqV7gW0xGgO52QgLR5:rcdutRTSPP3lLuBZwlqVEW0IgO52QS
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1E5230755BE658CEBE652633E80EBC37B5B7DF5818B231B53B734BB301B132922494246
sha3_384: 029633ee23ec5d54ace7f6bd53398e4aa80af23f59c74b689b2b08a226c66b670d2156d6729b8b865bc0414b882af6e5
ep_bytes: 83ec1cc7042401000000ff1534924000
timestamp: 2023-12-22 06:44:47

Version Info:

0: [No Data]

Zusy.531379 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.531379
FireEyeGeneric.mg.bedd0c6aece50f4a
SkyhighBehavesLike.Win32.Injector.pm
McAfeeArtemis!BEDD0C6AECE5
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Generic.d1ea85f8
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CZP
ClamAVWin.Trojan.Generic-10017566-0
BitDefenderGen:Variant.Zusy.531379
AvastFileRepMalware [Misc]
EmsisoftGen:Variant.Zusy.531379 (B)
DrWebBACKDOOR.Trojan
VIPREGen:Variant.Zusy.531379
Trapminesuspicious.low.ml.score
MAXmalware (ai score=80)
JiangminTrojan.Generic.bjgvg
GoogleDetected
VaristW32/Kryptik.LIO.gen!Eldorado
Kingsoftmalware.kb.a.855
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D81BB3
GDataGen:Variant.Zusy.531379
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R629739
BitDefenderThetaGen:NN.ZexaF.36608.c0Y@auYZEPd
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Agent!8.B1E (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.CZK!tr
AVGFileRepMalware [Misc]
Cybereasonmalicious.32df10
DeepInstinctMALICIOUS

How to remove Zusy.531379?

Zusy.531379 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment