Malware

Zusy.539534 removal guide

Malware Removal

The Zusy.539534 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.539534 virus can do?

  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.539534?


File Info:

name: 2991019E33670AB2CB93.mlw
path: /opt/CAPEv2/storage/binaries/6cf6bc7310db5e99b7e24c58f180547aadf462c7ead6035cca1ee7496d702137
crc32: C84562C4
md5: 2991019e33670ab2cb93655ea433ed39
sha1: 8ff3e6370339dfc85af3773c6f68fc0539ae3547
sha256: 6cf6bc7310db5e99b7e24c58f180547aadf462c7ead6035cca1ee7496d702137
sha512: ffd92a53da18a49a737ce6c44b832e598a99582c2774c0f8cc216f74ac4bb5f66c15d23c3ca2749d4ee52dc52c2942a2dd3a86fa2486bd1acb2ed0b68ab791a1
ssdeep: 3072:EfrN2C4F6OVCeupU81LsihX9C0lw5mYdT1R:EfR2dF6pfNlw9H
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T16CC37B02B3C1D579C5E711708EB2B79AF3B7E9204D390B173318275E9F722866C6929E
sha3_384: 0403d0e22c66c41f6baf9c7928d3be0c2ca1637cee7022cfdd00af4ed365cb993f58815e8a0250df462a07557f29497c
ep_bytes: 558bec538b5d08568b750c85f6578b7d
timestamp: 2024-03-18 13:01:02

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Sync Manager
FileVersion: 10.0.19041.1 (WinBuild.160101.0800)
InternalName: mobsync.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: mobsync.dll
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.19041.1
Translation: 0x0409 0x04b0

Zusy.539534 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Loader.1907
MicroWorld-eScanGen:Variant.Zusy.539534
McAfeeGenericRXAA-AA!2991019E3367
SangforTrojan.Win32.Zusy.Vp3i
SymantecML.Attribute.HighConfidence
KasperskyUDS:Trojan.Win32.Loader.gen
BitDefenderGen:Variant.Zusy.539534
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Zusy.539534 (B)
VIPREGen:Variant.Zusy.539534
FireEyeGen:Variant.Zusy.539534
SophosGeneric Reputation PUA (PUA)
MAXmalware (ai score=86)
JiangminTrojan.Loader.bk
GoogleDetected
ArcabitTrojan.Zusy.D83B8E
ZoneAlarmUDS:Trojan.Win32.Loader.gen
GDataGen:Variant.Zusy.539534
AhnLab-V3Trojan/Win.Generic.C5596515
ALYacGen:Variant.Zusy.539534
Cylanceunsafe
PandaTrj/Genetic.gen
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Zusy.539534!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Zusy

How to remove Zusy.539534?

Zusy.539534 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment