Malware

Razy.704872 removal

Malware Removal

The Razy.704872 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.704872 virus can do?

  • Attempts to connect to a dead IP:Port (5 unique times)
  • Performs some HTTP requests
  • Attempts to create or modify system certificates
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
telete.in
apps.identrust.com
puffpuff421.top

How to determine Razy.704872?


File Info:

crc32: 0CA7E4DD
md5: 7fce8295768543aaf0e7f79c3bd8d3df
name: 7FCE8295768543AAF0E7F79C3BD8D3DF.mlw
sha1: f72e5824b969a685fc61a17523086dc487064030
sha256: 4f2241ba18cc8fd46dc9dc7481212a5975ad9166f66e2542fc51f4fc4b49a94a
sha512: 1650d1719265386ad3b1a720a4ffbb9eead996b00081d37571c624508799006a10c23c98e8c38ce751cd2a6177cc0d4ade2d794c8ead5b82739cfbc25e5f9782
ssdeep: 12288:iEdAFZwjx8/erE5x44omN5OGGbuTuSsaxym/aqYE6IdsNwj:iJFZ68/46jo8Fj6IdsNwj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.704872 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.704872
Qihoo-360HEUR/QVM20.1.3FBB.Malware.Gen
ALYacGen:Variant.Razy.704872
CylanceUnsafe
SangforMalware
BitDefenderGen:Variant.Razy.704872
Cybereasonmalicious.4b969a
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Malware.Ulise-7344017-0
NANO-AntivirusTrojan.Win32.Racealer.iauhpp
Ad-AwareGen:Variant.Razy.704872
EmsisoftGen:Variant.Razy.704872 (B)
F-SecureHeuristic.HEUR/AGEN.1137972
DrWebTrojan.PWS.Siggen2.58128
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.BadFile.hh
FireEyeGeneric.mg.7fce8295768543aa
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.PSW.Racealer.all
AviraHEUR/AGEN.1137972
MAXmalware (ai score=86)
Antiy-AVLTrojan[Spy]/Win32.Agent
MicrosoftTrojanDownloader:Win32/Emotet!ml
ArcabitTrojan.Razy.DAC168
GDataGen:Variant.Razy.704872
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4214286
McAfeeArtemis!7FCE82957685
VBA32BScope.TrojanSpy.MSIL.Stealer
MalwarebytesSpyware.RaccoonStealer
ESET-NOD32a variant of Win32/Spy.Agent.PQZ
RisingStealer.Raccoon!1.BD9D (CLASSIC)
IkarusTrojan.Win32.Delf
eGambitUnsafe.AI_Score_75%
FortinetW32/Agent.PQZ!tr
BitDefenderThetaGen:NN.ZexaF.34634.KqX@amhvf3h
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Razy.704872?

Razy.704872 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment