Categories: Malware

Razy.331987 removal

The Razy.331987 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.331987 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Network activity detected but not expressed in API logs

Related domains:

edgedl.me.gvt1.com

How to determine Razy.331987?


File Info:

crc32: 7BE53262md5: 91fcb80a28df5cd9f479e1249d4c160bname: 91FCB80A28DF5CD9F479E1249D4C160B.mlwsha1: 9b10a244b916ced9a123179709ce01f26af446b1sha256: 23af54c8c8b2fdda4eaca93c8b96aa8a53c7dda9ead45656dfc2fb5a6cfba606sha512: 32496052a4030cbe6e6db2b2c19cf6274a57077356d7ec65be6fe1890f147d20d947dd22495c68ced6f8e12371371422d600a3e05ab0ae157fe64fbf4bab0f8fssdeep: 768:htGHLCwA3lMvpGiPkqON+SD/wPQva3W0UDozdUZw:htYAaG9zN+PB3W00oIwtype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Razy.331987 also known as:

Elastic malicious (high confidence)
Cynet Malicious (score: 100)
ALYac Gen:Variant.Razy.331987
Cylance Unsafe
Sangfor PUP.Win32.Razy.331987
CrowdStrike win/malicious_confidence_100% (D)
Cybereason malicious.a28df5
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Generik.DTPWNLV
APEX Malicious
Avast Win32:Malware-gen
BitDefender Gen:Variant.Razy.331987
MicroWorld-eScan Gen:Variant.Razy.331987
Ad-Aware Gen:Variant.Razy.331987
Sophos Mal/Generic-S
Comodo Malware@#1lnxob0283k3q
BitDefenderTheta Gen:NN.ZemsilF.34294.dm0@aqHzkbc
VIPRE Trojan.Win32.Generic!BT
McAfee-GW-Edition BehavesLike.Win32.Generic.qm
FireEye Generic.mg.91fcb80a28df5cd9
Emsisoft Gen:Variant.Razy.331987 (B)
SentinelOne Static AI – Malicious PE
Avira TR/Dropper.Gen
eGambit Unsafe.AI_Score_98%
Microsoft Trojan:Win32/Occamy.C23
GData Gen:Variant.Razy.331987
AhnLab-V3 Trojan/Win32.Bladabindi.R223521
McAfee Artemis!91FCB80A28DF
MAX malware (ai score=96)
Panda Trj/GdSda.A
TrendMicro-HouseCall TROJ_GEN.R022H0CIR21
Yandex Trojan.DR.Agent!vimHtj3f/MA
Ikarus Trojan.SuspectCRC
MaxSecure Trojan.Malware.300983.susgen
Fortinet PossibleThreat
AVG Win32:Malware-gen
Paloalto generic.ml

How to remove Razy.331987?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Generic.Dacic.1636.DB5B5110 removal

The Generic.Dacic.1636.DB5B5110 is considered dangerous by lots of security experts. When this infection is active,…

4 mins ago

Application.Application.Graftor.406603 (B) (file analysis)

The Application.Application.Graftor.406603 (B) is considered dangerous by lots of security experts. When this infection is…

13 mins ago

Generic.Dacic.1A7FA519.A.F5972732 removal instruction

The Generic.Dacic.1A7FA519.A.F5972732 is considered dangerous by lots of security experts. When this infection is active,…

24 mins ago

What is “Win32/AutoRun.VB.APK”?

The Win32/AutoRun.VB.APK is considered dangerous by lots of security experts. When this infection is active,…

24 mins ago

Trojan.Varydrop.1392 malicious file

The Trojan.Varydrop.1392 is considered dangerous by lots of security experts. When this infection is active,…

39 mins ago

About “Worm.Win32.Vobfus.dfsc” infection

The Worm.Win32.Vobfus.dfsc is considered dangerous by lots of security experts. When this infection is active,…

45 mins ago