Malware

Razy.593722 removal instruction

Malware Removal

The Razy.593722 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.593722 virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
sgtsteel.sytes.net
booray123.no-ip.biz

How to determine Razy.593722?


File Info:

crc32: C01B5AE2
md5: 43ece9093c5db435ca50360d211de478
name: 43ECE9093C5DB435CA50360D211DE478.mlw
sha1: cfd6855b5377cf1bc3ee35614003adfd55105ca5
sha256: e43926e8de1d3020477491a5110e4c98271bf4b7c57a353064a9c6f729816cc0
sha512: ca23484953e740e50caf35fb5b6886afe15c75c29cd8f57034b68d1e9387435a1cbbc5e1ea7e0096ac58ddc83744d29cf7291d0be582ccb8da7a837a9fe690f9
ssdeep: 384:KML+7gxyPnR3LusrACWUim/E8WPNg0210tVJCTA02pF9PVJfm2UW4:N+7gxyPdHE8QNXXr9Pe
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2014
Assembly Version: 3.0.0.0
InternalName: WinTro 3 Client.exe
FileVersion: 3.0.0.0
CompanyName: Microsoft
LegalTrademarks: Windows Defender
Comments: Windows Defender Update
ProductName: Windows Defender Update
ProductVersion: 3.0.0.0
FileDescription: Windows Defender Console
OriginalFilename: WinTro 3 Client.exe

Razy.593722 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.593722
CylanceUnsafe
ESET-NOD32a variant of MSIL/Small.EF
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.Win32.Generic
BitDefenderGen:Variant.Razy.593722
MicroWorld-eScanGen:Variant.Razy.593722
Ad-AwareGen:Variant.Razy.593722
BitDefenderThetaGen:NN.ZemsilF.34722.bm0@aqI02Zi
FireEyeGeneric.mg.43ece9093c5db435
EmsisoftGen:Variant.Razy.593722 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1136469
Antiy-AVLTrojan/Generic.ASMalwS.241314D
GDataGen:Variant.Razy.593722
AhnLab-V3Trojan/Win32.RL_Generic.C3654420
MAXmalware (ai score=83)
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen

How to remove Razy.593722?

Razy.593722 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment