Malware

Razy.319896 removal instruction

Malware Removal

The Razy.319896 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.319896 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

How to determine Razy.319896?


File Info:

crc32: E1747886
md5: 6e6dd509cbdda2ffa423dffdd44ded3c
name: NjRat-0.7D.exe
sha1: 70f800a06ec4b30eaf3edb9d700513bf6608990f
sha256: 88e58248c4a2ee6f9a2e3e1987250b1d8e3a29da075958f67682af448523be8a
sha512: 84e137b27ec65278c3859d35912a36831dae98e7884b0866a4f46553ad51d56859ffa77fab8fc2f26a97b2ead3b1cf54ac5d8b87f94593ae07508cdc321b77e7
ssdeep: 12288:S48H8JLk7kMXg0LzhczTFFFFFFFfhuXm23/V2iIctX666I0:iHU0LzhcPuXm23/V2iII666F
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.7
InternalName: NjRat 0.7D.exe
FileVersion: 0.0.0.7
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 0.0.0.7
FileDescription:
OriginalFilename: NjRat 0.7D.exe

Razy.319896 also known as:

EmsisoftGen:Variant.Razy.319896 (B)
CAT-QuickHealTrojan.IGENERIC
McAfeeArtemis!6E6DD509CBDD
K7AntiVirusTrojan ( 700000121 )
K7GWTrojan ( 700000121 )
Cybereasonmalicious.9cbdda
ArcabitTrojan.Razy.D4E198
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9967
NANO-AntivirusTrojan.Win32.Keylogger.esuyge
CyrenW32/S-a4103a60!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.AN
TrendMicro-HouseCallTROJ_GEN.R021C0RBE18
Paloaltogeneric.ml
GDataGen:Variant.Razy.319896
KasperskyTrojan-Spy.MSIL.Keylogger.coun
BitDefenderGen:Variant.Razy.319896
AvastWin32:Malware-gen
TencentMsil.Trojan-spy.Keylogger.Wrhd
Ad-AwareGen:Variant.Razy.319896
SophosMal/Bladabi-K
ComodoUnclassifiedMalware
F-SecureGen:Variant.Razy.319896
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionArtemis!Trojan
SentinelOnestatic engine – malicious
F-ProtW32/S-a4103a60!Eldorado
AviraHEUR/AGEN.1003146
Antiy-AVLTrojan/Win32.SGeneric
Endgamemalicious (high confidence)
AegisLabGen.Variant!c
ZoneAlarmTrojan-Spy.MSIL.Keylogger.coun
AhnLab-V3Trojan/Win32.Bladabindi.C2294492
ALYacGen:Variant.Razy.319896
AVwareTrojan.Win32.Generic!BT
MAXmalware (ai score=82)
VBA32Trojan.MSIL.gen.c.1
MalwarebytesBackdoor.Bladabindi.Generic
RisingTrojan.Bladabindi!8.C7 (CLOUD)
YandexTrojan.Bladabindi!rBpfqPTm8+w
IkarusTrojan.MSIL.Bladabindi
FortinetMSIL/Generic.DN.11D19C!tr
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikemalicious_confidence_80% (D)
Qihoo-360Win32/Trojan.17f

How to remove Razy.319896?

Razy.319896 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment