Malware

Razy.568458 (B) removal tips

Malware Removal

The Razy.568458 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.568458 (B) virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Razy.568458 (B)?


File Info:

crc32: 1FEACBDB
md5: 740c700b4fa78378e57918495aea3da5
name: twinkler_01.exe
sha1: 0dc763ddfac16ecc1aa7475ef0c6f1a341417e92
sha256: 669820fa9e2036a555a9e2352309070d2180fb6167453195914726a17ffa4a32
sha512: a56c2c73ed3ad6d002b5a6c7eb6070fc8fe00dd7508670fbacb43e4a17099d1d743dfa95be16f4c6c62aad068e4b67bc7126515af8e78819ecc5c0e657443d36
ssdeep: 12288:nqLrJ27XyuZ31uDdSgtYd6o1gmZJdUHk5RjmyarWO3:nQm31uDdXadptXdUHk3arWO3
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2019 x8c46x9ea6x7b14x8bb0 .Inc
InternalName: ADManage.exe
FileVersion: 2019.3.25.33
CompanyName: TODO:
ProductName: x70edx70b9x65b0x95fb
ProductVersion: 2019.3.25.33
FileDescription: x70edx70b9x65b0x95fb
OriginalFilename: ADManage.exe
Translation: 0x0804 0x04b0

Razy.568458 (B) also known as:

MicroWorld-eScanGen:Variant.Razy.568458
FireEyeGen:Variant.Razy.568458
McAfeeGenericRXAA-AA!740C700B4FA7
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 00554ed11 )
BitDefenderGen:Variant.Razy.568458
K7GWTrojan-Downloader ( 00554ed11 )
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GDataGen:Variant.Razy.568458
Kasperskynot-a-virus:HEUR:AdWare.Win32.ComponentBased.gen
AlibabaTrojanDownloader:Win32/Adload.e0cdce99
RisingDownloader.Adload!8.D1 (TFE:dGZlOgXeq5ReghelVA)
Endgamemalicious (moderate confidence)
SophosADManage (PUA)
ComodoMalware@#324vekjz1nf5y
F-SecureTrojan.TR/Dldr.Adload.yepor
McAfee-GW-EditionArtemis!PUP
EmsisoftGen:Variant.Razy.568458 (B)
IkarusTrojan-Downloader.Win32.Adload
CyrenW32/Trojan.MGTM-8013
JiangminAdWare.ComponentBased.q
MaxSecureTrojan.Malware.74571710.susgen
AviraTR/Dldr.Adload.yepor
MAXmalware (ai score=100)
ArcabitTrojan.Razy.D8AC8A
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.ComponentBased.gen
MicrosoftPUA:Win32/CoinMiner
AhnLab-V3PUP/Win32.AdLoad.C3637472
VBA32Adware.ComponentBased
ALYacGen:Variant.Razy.568458
Ad-AwareGen:Variant.Razy.568458
PandaTrj/CI.A
ESET-NOD32a variant of Win32/TrojanDownloader.Adload.NUQ
TrendMicro-HouseCallTROJ_GEN.R020H0CL519
YandexPUA.ComponentBased!
eGambitUnsafe.AI_Score_99%
FortinetW32/Adload.NUJ!tr.dldr
AVGWin32:TrojanX-gen [Trj]
Qihoo-360Win32/Virus.Adware.a94

How to remove Razy.568458 (B)?

Razy.568458 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment