Malware

Zusy.85363 removal instruction

Malware Removal

The Zusy.85363 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.85363 virus can do?

  • Executable code extraction
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Zusy.85363?


File Info:

crc32: E51284E4
md5: b73e962aa8647ac89f4966312971b730
name: B73E962AA8647AC89F4966312971B730.mlw
sha1: fcceee5f9112df9ed0939d8e4df38b81fc524383
sha256: dcf6e263de2c49fd7bc9daa600481890e9f6850c8624545b9f46b253752b975c
sha512: 423276fb4d98aaf3bd245104b8ef1e37f0ff78c4b62a245f9b430d1d6512aaf140bd8ca797a50986eb5c2fed519b9ee0a1a5a8e910d46c0fb02a385032cce4dd
ssdeep: 384:czoSa44luUciNY3B2MkWmLmD65YKAbD3WyCriNY2luUKzoSa4:ckluUXf/pLmD65YKiJCeTuUKk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0804 0x04b0
LegalCopyright: Duck
InternalName: Play
FileVersion: 1.00
CompanyName: Duck
LegalTrademarks: Duck
Comments: GameToos Hide Run Play.bat
ProductName: GameToos Hide Run Play.bat
ProductVersion: 1.00
FileDescription: GameToos Hide Run Play.bat
OriginalFilename: Play.exe

Zusy.85363 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004e8de21 )
DrWebTrojan.Siggen6.19011
ClamAVWin.Trojan.Agent-1387120
McAfeeTrojan-FDVK!B73E962AA864
CylanceUnsafe
ZillyaTrojan.Diple.Win32.69957
SangforTrojan.Win32.Diple.fshg
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Diple.92544ed6
K7GWTrojan ( 004e8de21 )
Cybereasonmalicious.aa8647
CyrenW32/A-5796314d!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.KJMXHFA
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Diple.fshg
BitDefenderGen:Variant.Zusy.85363
NANO-AntivirusTrojan.Win32.Diple.dxhqiw
MicroWorld-eScanGen:Variant.Zusy.85363
TencentMalware.Win32.Gencirc.10bb2059
Ad-AwareGen:Variant.Zusy.85363
SophosML/PE-A
ComodoMalware@#2h6uo8fw41qzx
F-SecureHeuristic.HEUR/AGEN.1130137
BitDefenderThetaGen:NN.ZevbaF.34170.dm0@aKgaZNnb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionTrojan-FDVK!B73E962AA864
FireEyeGeneric.mg.b73e962aa8647ac8
EmsisoftGen:Variant.Zusy.85363 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Diple.dplb
AviraHEUR/AGEN.1130137
Antiy-AVLTrojan/Win32.Diple
KingsoftWin32.Troj.Diple.fs.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Zusy
ZoneAlarmTrojan.Win32.Diple.fshg
GDataGen:Variant.Zusy.85363
AhnLab-V3Trojan/Win32.GameHack.R122019
VBA32Trojan.Diple
MAXmalware (ai score=100)
MalwarebytesMalware.AI.3295987774
PandaTrj/CI.A
YandexTrojan.GenAsa!wcf8bbzgHBM
IkarusTrojan.Win32.Diple
FortinetW32/Diple.FSHG!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Zusy.85363?

Zusy.85363 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment