Malware

How to remove “Razy.706822”?

Malware Removal

The Razy.706822 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.706822 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.

How to determine Razy.706822?


File Info:

crc32: AD7C98E4
md5: 6dbce1851b656de5f49eb1d8c9786b72
name: 6DBCE1851B656DE5F49EB1D8C9786B72.mlw
sha1: e63a7e56571b100c6acd02ba892ed35e97b35fe1
sha256: f6521e298c849c14cd0a4d0e8947fa2d990e06d978e89a262e62c968cefd9b8f
sha512: ab89353957f9b369b8cd3d61c64c4d3cd82a1f2e1a454d496d20c87da2b60baeb679aa803f0f50f5c1fd835992528c02f03ab5f692e1dc5ab6385ecd75e09760
ssdeep: 6144:ImmjCk0masUYVgM5rOdnUoRteCSsK1gJM:ejCuYLM5idUmteNsK1gJM
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.7483.31068
InternalName: EncryptFile.exe
FileVersion: 1.0.7483.31068
ProductVersion: 1.0.7483.31068
FileDescription:
OriginalFilename: EncryptFile.exe

Razy.706822 also known as:

K7AntiVirusTrojan ( 004b8b661 )
Elasticmalicious (high confidence)
CynetMalicious (score: 85)
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1348071
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:MSIL/Bladabindi.cc434dd6
K7GWTrojan ( 004b8b661 )
Cybereasonmalicious.51b656
SymantecTrojan Horse
ESET-NOD32MSIL/Filecoder.AAS
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Agent-9378616-0
KasperskyHEUR:Trojan-Ransom.MSIL.Agent.gen
BitDefenderGen:Variant.Razy.706822
NANO-AntivirusTrojan.Win32.Ransom.hooahe
ViRobotTrojan.Win32.S.Ransom.258048.C
MicroWorld-eScanGen:Variant.Razy.706822
TencentWin32.Trojan.Ransom.Pdah
Ad-AwareGen:Variant.Razy.706822
SophosMal/Generic-S
ComodoMalware@#1hkyjwm7gczeg
BitDefenderThetaGen:NN.ZemsilF.34628.pm0@aWk8S5e
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.MSIL.TRYTOCRY.AB
McAfee-GW-EditionRDN/Ransom
FireEyeGeneric.mg.6dbce1851b656de5
EmsisoftGen:Variant.Razy.706822 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraBDS/Bladabindi.knzgs
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:MSIL/Bladabindi.G
ArcabitTrojan.Razy.DAC906
AegisLabTrojan.MSIL.Agent.j!c
GDataGen:Variant.Razy.706822
AhnLab-V3Trojan/Win32.Ransom.C4155736
McAfeeRDN/Ransom
MAXmalware (ai score=100)
MalwarebytesRansom.Try2Cry
PandaTrj/CI.A
TrendMicro-HouseCallRansom.MSIL.TRYTOCRY.AB
RisingRansom.Try2Cry!1.C936 (CLOUD)
YandexTrojan.Filecoder!DON095sKdOM
IkarusTrojan-Ransom.Try2Cry
MaxSecureTrojan.Malware.82199810.susgen
FortinetPossibleThreat
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.NjRAT.HwMAar8A

How to remove Razy.706822?

Razy.706822 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment