Malware

What is “Razy.647305”?

Malware Removal

The Razy.647305 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.647305 virus can do?

  • Executable code extraction
  • Attempts to repeatedly call a single API many times in order to delay analysis time

Related domains:

hoh.adoptioncla.bid
grill.glyceraceousfive.bid

How to determine Razy.647305?


File Info:

crc32: 3DF76C29
md5: ba0c869fd621cd61957c0dab8f02df4e
name: BA0C869FD621CD61957C0DAB8F02DF4E.mlw
sha1: c784ba65a09b4574ebd42ecb0444893d61dff52b
sha256: dd2dd3c38a8d5ea1f41ee0d48425fd87fd78a4e72fce940c656138da23416764
sha512: c25f04e8dc65bdbb1a484a78e5222c17b714d7dd2eb7ee46a817917c1cd0b0394a1fe887cb0fc1394233bc57148f21fd65f5e9ebc98b8a16a2022b168d10189b
ssdeep: 24576:EnXXpbjI62yzwurqaZTbE6Cm0FqxuyS9aD:KXq62yNhqmxfD
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.647305 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.13154
MicroWorld-eScanGen:Variant.Razy.647305
McAfeePUP-XBM-FE
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabAdware.Win32.StartSurf.2!c
SangforMalware
K7AntiVirusAdware ( 004f4a0a1 )
BitDefenderGen:Variant.Razy.647305
K7GWAdware ( 004f4a0a1 )
Cybereasonmalicious.fd621c
BitDefenderThetaGen:NN.ZexaF.34804.vDW@aq0P3zhi
SymantecTrojan.Gen.6
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
NANO-AntivirusRiskware.Win32.StartSurf.eogygz
TencentMalware.Win32.Gencirc.10b1fffe
Ad-AwareGen:Variant.Razy.647305
EmsisoftGen:Variant.Razy.647305 (B)
ComodoApplication.Win32.IStartSurf.HA@705lto
F-SecureHeuristic.HEUR/AGEN.1103315
ZillyaAdware.GenericKD.Win32.3475
McAfee-GW-EditionBehavesLike.Win32.Generic.tm
FireEyeGeneric.mg.ba0c869fd621cd61
SophosGeneric PUA MH (PUA)
IkarusPUA.Win32.Prepscram
JiangminAdWare.StartSurf.tk
AviraHEUR/AGEN.1103315
Antiy-AVLGrayWare[AdWare]/Win32.StartSurf
MicrosoftSoftwareBundler:Win32/Prepscram
ArcabitTrojan.Razy.D9E089
SUPERAntiSpywarePUP.IStartSurf/Variant
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataGen:Variant.Razy.647305
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.StartSurf.R200119
VBA32AdWare.StartSurf
ALYacGen:Variant.Razy.647305
MAXmalware (ai score=99)
MalwarebytesPUP.Optional.IStartSurf
PandaTrj/Genetic.gen
ESET-NOD32Win32/IStartSurf.BF potentially unwanted
RisingPUF.IStartSurf!8.189 (TFE:5:jMtSxJ3RSZB)
YandexPUA.StartSurf!Rpttg73QK2Y
SentinelOneStatic AI – Malicious PE – Adware
eGambitUnsafe.AI_Score_100%
FortinetRiskware/PUP_XBM
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Razy.647305?

Razy.647305 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment