Malware

Razy.564590 removal tips

Malware Removal

The Razy.564590 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.564590 virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine Razy.564590?


File Info:

crc32: E293CEF4
md5: 198436753abc3a016fd00782e68c4c2e
name: 198436753ABC3A016FD00782E68C4C2E.mlw
sha1: 56163d55b15a6bf167966d05a5bb6b1760169128
sha256: 45f907016cb82a379a06187a3e9b478af573b771411c363cda9b4c8930141acd
sha512: d467877b1b370367b6395e80c0c7194af2de648690ea5f33a9fa8b66b143d91bb9e8daec96c9e3730cc0997a078f755008e649bf07b378be5b6998402e7284b0
ssdeep: 1536:JvQBeOGtrYS3srx93UBWfwC6Ggnouy8WFRxZOYTeGL/Rv6afX:JhOmTsF93UYfwC6GIoutWFf7TeGLp
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Razy.564590 also known as:

K7AntiVirusTrojan ( 005003ac1 )
DrWebTrojan.Inject1.58305
MicroWorld-eScanGen:Variant.Razy.564590
CAT-QuickHealTrojanDropper.Dinwod
ALYacGen:Variant.Razy.564590
CylanceUnsafe
ZillyaDropper.DinwodGen.Win32.2
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDropper:Win32/Dinwod.cbace3ee
K7GWTrojan ( 005003ac1 )
Cybereasonmalicious.53abc3
TrendMicroTrojanSpy.Win32.BANKER.SMJC
BaiduWin32.Trojan.Agent.acb
CyrenW32/S-5b8fae09!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Packed.BlackMoon.A potentially unwanted
APEXMalicious
TotalDefenseWin32/Oflwr.A!crypt
AvastWin32:Injector-CVE [Trj]
ClamAVWin.Trojan.Agent-1388676
GDataGen:Variant.Razy.564590
KasperskyTrojan-Dropper.Win32.Dinwod.acqn
BitDefenderGen:Variant.Razy.564590
NANO-AntivirusTrojan.Win32.Dinwod.ejafor
ViRobotTrojan.Win32.Agent.69310
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
TencentTrojan.Win32.GameteaSpy.a
Ad-AwareGen:Variant.Razy.564590
SophosTroj/Eydrop-A
ComodoTrojWare.Win32.TrojanDropper.Dinwod.A@5vqtjo
F-SecureTrojan.TR/Spy.Gen
BitDefenderThetaGen:NN.ZexaF.34110.emJfa4BEZ2g
VIPRETrojan.Win32.Agent.xfc (v)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Dropper.lc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.198436753abc3a01
EmsisoftGen:Variant.Razy.564590 (B)
SentinelOneDFI – Malicious PE
F-ProtW32/S-5b8fae09!Eldorado
Endgamemalicious (high confidence)
WebrootW32.Trojan.Agent.Gen
AviraTR/Spy.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan[Dropper]/Win32.Dinwod
MicrosoftTrojanDropper:Win32/Dinwod
JiangminTrojanDropper.Dinwod.pc
ArcabitTrojan.Razy.D89D6E
AegisLabTrojan.Win32.Dinwod.tn6p
ZoneAlarmTrojan-Dropper.Win32.Dinwod.acqn
TACHYONTrojan-Dropper/W32.Dinwod.Zen
AhnLab-V3Trojan/Win32.Dinwod.C3162871
Acronissuspicious
McAfeeDropper-FVF!198436753ABC
MAXmalware (ai score=82)
VBA32TrojanDropper.Dinwod
MalwarebytesTrojan.MalPack
TrendMicro-HouseCallTrojanSpy.Win32.BANKER.SMJC
RisingTrojan.Agent!1.AB1D (CLOUD)
YandexTrojan.DR.Dinwod!dCCk6/8cSJk
IkarusTrojan-Dropper.Win32.Dinwod
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.7136!tr
AVGWin32:Injector-CVE [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.PSW.GameOnline.GP

How to remove Razy.564590?

Razy.564590 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment