Malware

Zusy.535959 malicious file

Malware Removal

The Zusy.535959 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.535959 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Zusy.535959?


File Info:

name: 0FD791B52AD7AFFE78D1.mlw
path: /opt/CAPEv2/storage/binaries/d2769afd0f4ecbbbe0955e161dc0b165187c78d7994b708f11963e9e1218f153
crc32: C45916F3
md5: 0fd791b52ad7affe78d176019582541f
sha1: 3bae07eb736f3c5d987b81f0bc1ba766d3ea53ec
sha256: d2769afd0f4ecbbbe0955e161dc0b165187c78d7994b708f11963e9e1218f153
sha512: a89eb8dc51324be894b0939170410a5a809941294c99632469eb852c7e8e20d87432ebe3b14d4962baf9690476500b432367b9f4fe7529f3d0805206a128d0d6
ssdeep: 6144:9DUOfMKAcIFwQ3mNfOBmaUq/dp8TPSihauhWJ1PfGWp/B02+iIttmNNsw2wy:9DlTTfO5GeJNGWp502+1
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1C6D4A450BF84DB21C5D83B7783AB465123B5E0E24632E30A9FDDBAF54C235253E1A35A
sha3_384: 6552462249c3809330f0a4e0c5e591700f97b2ebcc03d7aec8920f0ffacc7b863e7ed0095b7e0b101ae65581ff6d8e59
ep_bytes: ff250020400000000000000000000000
timestamp: 2093-05-26 15:47:03

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ShibaGT Template
FileVersion: 1.0.0.0
InternalName: ShibaGT Template.dll
LegalCopyright: Copyright © 2023
LegalTrademarks:
OriginalFilename: ShibaGT Template.dll
ProductName: ShibaGT Template
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Zusy.535959 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
FireEyeGen:Variant.Zusy.535959
SkyhighArtemis
McAfeeArtemis!0FD791B52AD7
Cylanceunsafe
K7GWUnwanted-Program ( 005a62dd1 )
K7AntiVirusUnwanted-Program ( 005a62dd1 )
ESET-NOD32a variant of MSIL/GameHack_AGen.BZ potentially unsafe
BitDefenderGen:Variant.Zusy.535959
MicroWorld-eScanGen:Variant.Zusy.535959
EmsisoftGen:Variant.Zusy.535959 (B)
VIPREGen:Variant.Zusy.535959
WebrootW32.Riskware.Gen
GoogleDetected
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitTrojan.Zusy.D82D97
GDataGen:Variant.Zusy.535959
VaristW32/Zusy.TM.gen!Eldorado
ALYacGen:Variant.Zusy.535959
MAXmalware (ai score=81)
TrendMicro-HouseCallTROJ_GEN.R002H09C624
FortinetAdware/GameHack_AGen
DeepInstinctMALICIOUS

How to remove Zusy.535959?

Zusy.535959 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment