Malware

About “Zusy.5853” infection

Malware Removal

The Zusy.5853 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.5853 virus can do?

  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.5853?


File Info:

crc32: CD9BE774
md5: f0f19362a78f48c6f6ff85f89686ad43
name: F0F19362A78F48C6F6FF85F89686AD43.mlw
sha1: 5a93514a3d05720ec13e20b3872f5e316a45d922
sha256: b78688187d93f711905c5b88809104fb1cc7fc243fad68d0c52b802952d550fc
sha512: f243a276d98cb0c33e290ade9b47d0da7f383259236fb0191eb49fb45e85780bbec280aa07f688d55c5f05eb5dfd6cb5605280e46e7a780f211f9c0dd822f376
ssdeep: 384:/2Vx37usOo8Vd64KqBz8E3/ed/ETPR4Y0+F2OKGcQr:Onaho4KqBz8MZmBk2O
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Zusy.5853 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Agent.kYRk
Elasticmalicious (high confidence)
McAfeeGenericRXAA-AA!F0F19362A78F
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
Cybereasonmalicious.2a78f4
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zusy.5853
NANO-AntivirusTrojan.Win32.EncPkHJ.zajlj
MicroWorld-eScanGen:Variant.Zusy.5853
Ad-AwareGen:Variant.Zusy.5853
ComodoMalware@#1ganbqvpnddzh
BitDefenderThetaGen:NN.ZexaE.34294.aiW@aa9Kqkb
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0RKI21
McAfee-GW-EditionBehavesLike.Win32.Ardurk.lc
FireEyeGeneric.mg.f0f19362a78f48c6
EmsisoftGen:Variant.Zusy.5853 (B)
SentinelOneStatic AI – Malicious PE
JiangminVariant.Zusy.aei
WebrootW32.Malware.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.8CB77D
KingsoftWin32.Malware.Heur_Generic.B.(kcloud)
MicrosoftPWS:Win32/Zbot!ml
GDataGen:Variant.Zusy.5853
Acronissuspicious
MAXmalware (ai score=87)
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0RKI21
RisingTrojan.Generic@ML.94 (RDMK:evy//FZEzGQOIox1kjNNXQ)
MaxSecureTrojan.Malware.2588.susgen
AVGWin32:Malware-gen

How to remove Zusy.5853?

Zusy.5853 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment