Malware

Razy.590348 malicious file

Malware Removal

The Razy.590348 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.590348 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Razy.590348?


File Info:

crc32: 9FA510E5
md5: 17545551fe857e11995bd34e252c7d11
name: testlow.exe
sha1: 27fb29a2dc94bb32360628e26283f507bc03a143
sha256: 3cced1002678efa9072eea9f27df0da34f6a56ca9a86fa91e70bb97c55b32860
sha512: 1d14b45f7db77fbf84177bbdb5e5d1612b69ff904c1b3040c7c781473cd4a9eaaf77d52f9d49bc6bb322443cbd4c72d7af4f9eb694ff6edf25bbf2408b872886
ssdeep: 192:jHaFIzkXmHQGHoy15a+fJwo3WoqKdJCK6rPqoRfE5zXjpkrPVma:jHaubHDIyThf/WKyPqYfE5DCLVm
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: testlow.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ConsoleApp1
ProductVersion: 1.0.0.0
FileDescription: ConsoleApp1
OriginalFilename: testlow.exe

Razy.590348 also known as:

MicroWorld-eScanGen:Variant.Razy.590348
FireEyeGen:Variant.Razy.590348
McAfeeRDN/Generic BackDoor
MalwarebytesSpyware.TSTStealer.FPNL
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Broide.m!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Razy.590348
K7GWRiskware ( 0040eff71 )
TrendMicroTROJ_GEN.R01FC0WLD19
BitDefenderThetaGen:NN.ZemsilF.33556.am0@amM28uc
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataGen:Variant.Razy.590348
KasperskyHEUR:Backdoor.MSIL.Broide.gen
NANO-AntivirusTrojan.Win32.Razy.gllndl
AvastWin32:BackdoorX-gen [Trj]
RisingTrojan.IPLogger!1.B69D (CLASSIC)
Ad-AwareGen:Variant.Razy.590348
SophosMal/Generic-S
F-SecureBackdoor.BDS/Redcap.jlguc
DrWebTrojan.DownLoader30.52811
ZillyaDownloader.Agent.Win32.398681
McAfee-GW-EditionArtemis!Trojan
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Razy.590348 (B)
SentinelOneDFI – Malicious PE
CyrenW32/Trojan.YEQX-9187
JiangminBackdoor.MSIL.cgwc
AviraBDS/Redcap.jlguc
MAXmalware (ai score=99)
Antiy-AVLTrojan[Backdoor]/MSIL.Broide
Endgamemalicious (moderate confidence)
ArcabitTrojan.Razy.D9020C
ZoneAlarmHEUR:Backdoor.MSIL.Broide.gen
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Malware/Win32.RL_Generic.C3640434
VBA32TScope.Trojan.MSIL
ALYacGen:Variant.Razy.590348
CylanceUnsafe
ESET-NOD32MSIL/TrojanDownloader.Agent.FWE
TrendMicro-HouseCallTROJ_GEN.R01FC0WLD19
IkarusTrojan-Downloader.MSIL.Agent
MaxSecureTrojan.Malware.74705330.susgen
FortinetMSIL/Broide!tr.bdr
AVGWin32:BackdoorX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Backdoor.bdf

How to remove Razy.590348?

Razy.590348 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment