Malware

About “Zusy.539138” infection

Malware Removal

The Zusy.539138 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.539138 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Zusy.539138?


File Info:

name: F5E59A217D961637C665.mlw
path: /opt/CAPEv2/storage/binaries/c1f8ec4cb17b6364873efc0ffe981cf236ee8dfc32a52c82ff01bb2d99a401c8
crc32: 16BABA2C
md5: f5e59a217d961637c665831a7f6930e4
sha1: c8feb06b03ab32153d25df02cdfe79823250f927
sha256: c1f8ec4cb17b6364873efc0ffe981cf236ee8dfc32a52c82ff01bb2d99a401c8
sha512: be65c18017fb2cad365ea7a0d673397a4db50aa0572845cb7fc62379bec077eb0e6515ad4b0e94a7ef9e723012c78d4d278cd026628c01b058727902954d4759
ssdeep: 1536:82SmRLLv5VFqFv/cIKCRtv3Ew1MamavIlW3SIl3eX8ptgjIE:DSmR07B0w1MamaIkSIl3eXn8E
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T125A3A42013FD0928F9FE2EBF19B0468557B4B403A932C61D0FC6A4DE1971E999A057FB
sha3_384: 8cb4e9ade1179df063b1999edd515dc1b28d1d24d0856671aaa497d29cbcfad69aa51875d68ea51160495688b18465ae
ep_bytes: ff25002000100000000020000000cc00
timestamp: 2049-09-08 08:13:52

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ShibaGT Template
FileVersion: 1.0.0.0
InternalName: ShibaGT Template.dll
LegalCopyright: Copyright © 2023
LegalTrademarks:
OriginalFilename: ShibaGT Template.dll
ProductName: ShibaGT Template
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Zusy.539138 also known as:

BkavW32.Common.76BB12C2
LionicTrojan.Win32.GameHack.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.539138
FireEyeGen:Variant.Zusy.539138
ALYacGen:Variant.Zusy.539138
Cylanceunsafe
VIPREGen:Variant.Zusy.539138
K7AntiVirusUnwanted-Program ( 005a62dd1 )
K7GWUnwanted-Program ( 005a62dd1 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/GameHack_AGen.AV potentially unsafe
BitDefenderGen:Variant.Zusy.539138
SophosGeneric Reputation PUA (PUA)
Antiy-AVLRiskWare/MSIL.Gamehack
ArcabitTrojan.Zusy.D83A02
GDataGen:Variant.Zusy.539138
AhnLab-V3Trojan/Win.Generic.C5588144
McAfeeRDN/generic.dx
MAXmalware (ai score=81)
DeepInstinctMALICIOUS
TrendMicro-HouseCallTROJ_GEN.R002H09BK24
FortinetAdware/GameHack_AGen
PandaTrj/Chgt.AD

How to remove Zusy.539138?

Zusy.539138 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment