Malware

About “Razy.46833” infection

Malware Removal

The Razy.46833 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.46833 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.46833?


File Info:

crc32: AA78DBBA
md5: 4313b92797d41d1fee17e661c293bf6e
name: 4313B92797D41D1FEE17E661C293BF6E.mlw
sha1: 6e530daaec5e9cbed8d29b5f2760534a8a59a09e
sha256: 2187e5af60824ed7de1e82cbf5c360d533695e8359d2dd3826263d38ed173032
sha512: 753920d23f1690e4d01a50557c0d2b48a06a4b267947001a54fd96910fb587a274d1e0b01953f842c0bf6a855bf6c99438c75f325a2a9ea949505a654f181b1d
ssdeep: 1536:3TrmnPFKVIqbwwZWWBRN+ecsaoF6Vj21utF/3e2OBHndfCtfLJLqCQio5IeJf6S:PmK+Ig+6nSUJrUE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Ugock Software 2004-2005
InternalName: Ugock
FileVersion: 821
CompanyName: HN SOFTWIN NCD
P3qV8: fCxnCraB
1wvSwgX: lB3XPs
Ic7TK7U: xhjCV
dWRuS: PnergIxK
c4Uc7Y: BvykM6f5qp
ProductName: Ugock Icwbveh Safetxomn
bvVNwGPtSe: elPB7s58P1
LtRSyS6: r5b61w
ProductVersion: 8.9
FileDescription: Ugock Icwbveh Safetxomn
7erbjqeD: Trookm
V5LKg8MI: TXhv3UrR
y5eg6OWg8l: NKFDfR
OriginalFilename: Ugock.exe
RlYRE: Befhx
Translation: 0x0409 0x04b0

Razy.46833 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055dd191 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed.792
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.46833
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.903215
SangforTrojan.Win32.Generic.8
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Kryptik.d03b49e3
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.797d41
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.NTI
APEXMalicious
AvastWin32:MalOb-IR [Cryp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.46833
NANO-AntivirusTrojan.Win32.Kryptik.chjba
MicroWorld-eScanGen:Variant.Razy.46833
TencentWin32.Trojan.Generic.Ozhz
Ad-AwareGen:Variant.Razy.46833
SophosMal/Generic-S
ComodoMalware@#2s6olkqkzscn6
BitDefenderThetaGen:NN.ZexaF.34294.zC0@aGU5UZbi
VIPRETrojan.Win32.Zbot.xmp (v)
McAfee-GW-EditionBehavesLike.Win32.Dropper.gz
FireEyeGeneric.mg.4313b92797d41d1f
EmsisoftGen:Variant.Razy.46833 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Banker.Qhost.nw
AviraTR/Dropper.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Dynamer!ac
SUPERAntiSpywareTrojan.Agent/Gen-Faldesc[Cont]
GDataGen:Variant.Razy.46833
McAfeeArtemis!4313B92797D4
MAXmalware (ai score=97)
PandaBck/Qbot.AO
RisingTrojan.Generic@ML.90 (RDML:JnoSxOX8jzFzHlzy6PZVWA)
YandexTrojan.GenAsa!lsxqgI7sFV0
IkarusTrojan-Banker.Win32.Qhost
FortinetW32/Yakes.B!tr
AVGWin32:MalOb-IR [Cryp]
Paloaltogeneric.ml

How to remove Razy.46833?

Razy.46833 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment