Malware

How to remove “Kazy.67252”?

Malware Removal

The Kazy.67252 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Kazy.67252 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

How to determine Kazy.67252?


File Info:

crc32: 6F7C2E0B
md5: b3256ca4042e8ef3aafdabb081f16178
name: 60-1-1-157.exe
sha1: 0635ece3f42f3b253cfb2bb928ee841943fffef5
sha256: 8eb8801169f81c85ae30844b355ca9c888d4e2d2560dc20a2517c029d785a85f
sha512: df07276dbe57dc6cca0c2a95d948ed4c9c15cb1fa00eda5d75f0f5cc69e8f26913a3cce863ca50d3d1e7620835647fda8493e7019cc2f00a88576ca49b2bc6ed
ssdeep: 1536:fIgWlKKO6UinjQOysmUQbezEr14tgxTCqxpoQ:AvlbgPUQbsEZegvKQ
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Kazy.67252 also known as:

DrWebDialer.Online.12
MicroWorld-eScanGen:Variant.Kazy.67252
FireEyeGeneric.mg.b3256ca4042e8ef3
CAT-QuickHealTrojan.GenericPMF.S7122153
ALYacGen:Variant.Kazy.67252
CylanceUnsafe
VIPREBehavesLike.Win32.Malware.bsc (vs)
AegisLabRiskware.Win32.Generic.l0jn
SangforMalware
K7AntiVirusDialer ( 000057d21 )
BitDefenderGen:Variant.Kazy.67252
K7GWDialer ( 000057d21 )
Cybereasonmalicious.4042e8
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34090.dmGfayIT3gy
CyrenW32/Webdialer.gen!GSA
APEXMalicious
AvastWin32:Dialer-ACP [Trj]
ClamAVWin.Trojan.Dialer-202
GDataGen:Variant.Kazy.67252
Kasperskynot-a-virus:Porn-Dialer.Win32.0190-Dialers
AlibabaRiskWare:Win32/0190-Dialers.ae440948
NANO-AntivirusTrojan.Win32.Online.glxvkq
TencentWin32.Risk.Dialer.Pcif
Ad-AwareGen:Variant.Kazy.67252
SophosDial/190-A
ComodoApplicUnsaf.Win32.Dialer.Generic@jux8x
F-SecureDialer.DIAL/000290
ZillyaDialer.0190Dialers.Win32.1
TrendMicroDIAL_RAS.HE
McAfee-GW-EditionBehavesLike.Win32.Dialer.qc
EmsisoftGen:Variant.Kazy.67252 (B)
Ikarusnot-a-virus:Porn-Dialer.Win32.Rdial
F-ProtW32/Webdialer.gen!GSA
JiangminPorn-Dialer.0190-Dialers.p
AviraDIAL/000290
Endgamemalicious (moderate confidence)
ArcabitTrojan.Kazy.D106B4
ZoneAlarmnot-a-virus:Porn-Dialer.Win32.0190-Dialers
MicrosoftProgram:Win32/Vigram.A
AhnLab-V3Adware/Win32.Dialer.R21773
Acronissuspicious
McAfeeArtemis!B3256CA4042E
MAXmalware (ai score=88)
VBA32BScope.Dialer.Premium
PandaDialer.Gen
ESET-NOD32a variant of Win32/Dialer.0190-Dialers
TrendMicro-HouseCallDIAL_RAS.HE
RisingHackTool.PornDialer!1.6613 (CLOUD)
YandexDialer.eConnect.Gen
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Scar.FMKE!tr
AVGWin32:Dialer-ACP [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Kazy.67252?

Kazy.67252 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment