Malware

Razy.46754 (file analysis)

Malware Removal

The Razy.46754 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.46754 virus can do?

  • At least one process apparently crashed during execution
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.46754?


File Info:

name: C65851965EA987360F05.mlw
path: /opt/CAPEv2/storage/binaries/e863f8e9f25c9258c5cec0102b43ada1279656a729fec2cde487f475bb0ec051
crc32: 7FBA1232
md5: c65851965ea987360f05579adb4f1798
sha1: dc639c65b248c78646a6ac511889abcee432367e
sha256: e863f8e9f25c9258c5cec0102b43ada1279656a729fec2cde487f475bb0ec051
sha512: a25273b58db36f7a13c6ff70f9790d74d9fd8ede586cd72f3c2fffa48aa7d40828b35b4c849ab2bbbe8cd114beee0b3d0c65a7573bb160ebdbcaaf662e15a87d
ssdeep: 3072:rVPgVpzw4GJbWqHhy0DJhmH09M8MwGWMja5Q9LQg0mOL24ZszHBWVLmpPEh3ylua:BPVWqHIEu09MbokQgs1AHBWV6NYylua
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D924BFC3D5248012F426A934EB10DDE791ACFB353F949365721E6E78EC58DF02722BA6
sha3_384: 140eecb1f3d253b9c27ad21434cc1d4b480e8c58c673a33e3bc105ebcda0baaa0c05851285b055d1dcb588e0548be9bf
ep_bytes: 8b056450430083f05c4805ca00000089
timestamp: 2011-03-15 00:52:12

Version Info:

CompanyName: Promise Technology, Inc.
FileDescription: Froze Labs Edit
FileVersion: 5.1
InternalName: Jumbo Behind Raged
OriginalFilename: Lohgnrvus7xed.exe
ProductName: Beefy
ProductVersion: 5.1
Translation: 0x0409 0x04b0

Razy.46754 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.46754
FireEyeGeneric.mg.c65851965ea98736
CAT-QuickHealTrojanPWS.Zbot.Y
ALYacGen:Variant.Razy.46754
MalwarebytesMalware.AI.1722719767
VIPRETrojan.Win32.Reveto.D (v)
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00486ca91 )
AlibabaTrojan:Win32/Kryptik.466978a6
K7GWTrojan ( 00486ca91 )
Cybereasonmalicious.65ea98
BitDefenderThetaGen:NN.ZexaF.34212.ny1@aay8k5hi
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.AJQI
TrendMicro-HouseCallTROJ_KRYPTIK_FE2001B5.UVPM
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.46754
NANO-AntivirusTrojan.Win32.Panda.vqjua
AvastWin32:Reveton-Y [Trj]
TencentMalware.Win32.Gencirc.10bf98b1
Ad-AwareGen:Variant.Razy.46754
EmsisoftGen:Variant.Razy.46754 (B)
ZillyaTrojan.Kryptik.Win32.879564
TrendMicroTROJ_KRYPTIK_FE2001B5.UVPM
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.dh
SophosMal/Generic-R + Mal/EncPk-ABFU
IkarusTrojan.Win32.Ransom
GDataGen:Variant.Razy.46754
JiangminTrojan.Generic.abdls
WebrootW32.Malware.Gen
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.1BF0B7
ArcabitTrojan.Razy.DB6A2
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftPWS:Win32/Zbot!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4363055
Acronissuspicious
McAfeeGenericR-HJY!C65851965EA9
TACHYONTrojan/W32.Agent.224768.LL
VBA32BScope.Trojan.Bitrep
APEXMalicious
RisingSpyware.Zbot!8.16B (CLOUD)
YandexTrojan.GenAsa!DLSktYH9T8c
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ABC!tr
AVGWin32:Reveton-Y [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Razy.46754?

Razy.46754 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment