Malware

Razy.729891 removal guide

Malware Removal

The Razy.729891 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.729891 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.729891?


File Info:

crc32: 9868A01E
md5: 36741edbe81c41304f1d4b2cfb724a83
name: 36741EDBE81C41304F1D4B2CFB724A83.mlw
sha1: d1419103ada0e55abf06f0f091271d2f76e29896
sha256: dda4ae45a8fc2237ba39d0c2223f43eb0f0ee3700f4b7eff6c7b5415a41e8727
sha512: f7b50c0edfecce9ef46d42aa8c3d4d8901b8543a6b7cfc32d5bb42e2c77d8cef7adc96e9fe161a7ff889bfa50355e68dbde2e1bcf2af05f382a587bd4e9eb2be
ssdeep: 12288:WME2LjRx81J51mWe24Xl8bSsuzCM6nM+VjSOEwwMs:jE2x+0Xl5suz
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa92016 RyOYnthrNg
Assembly Version: 4.2.6.8
InternalName: Metallica Simulator.exe
FileVersion: 4.5.2.5
CompanyName: RyOYnthrNg
Comments: bolEnUDpEBfvSpiMQwxWUUe
ProductName: [PRODUCT]
ProductVersion: 4.5.2.5
FileDescription: vnbawjjLkvcexhULMNzza
OriginalFilename: Metallica Simulator.exe

Razy.729891 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.KeyLogger.37182
MicroWorld-eScanGen:Variant.Razy.729891
FireEyeGeneric.mg.36741edbe81c4130
ALYacGen:Variant.Razy.729891
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 700000121 )
BitDefenderGen:Variant.Razy.729891
K7GWTrojan ( 700000121 )
Cybereasonmalicious.be81c4
BitDefenderThetaGen:NN.ZemsilF.34804.Hm0@a4KXwBb
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.NMH.eeindp
Ad-AwareGen:Variant.Razy.729891
SophosMal/Generic-S
ComodoTrojWare.MSIL.Dynamer.NMH@7i4np7
F-SecureTrojan.TR/Dropper.Gen2
ZillyaTrojan.Injector.Win32.494450
McAfee-GW-EditionGenericRXAI-MW!36741EDBE81C
EmsisoftGen:Variant.Razy.729891 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen2
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Razy.DB2323
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Razy.729891
AhnLab-V3Trojan/Win32.RL_Generic.C4284029
McAfeeGenericRXAI-MW!36741EDBE81C
MAXmalware (ai score=83)
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Injector.NMH
YandexTrojan.Agent!WSMbF79JuXI
IkarusTrojan.MSIL.Injector
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Injector.NMH!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360Win32/Trojan.992

How to remove Razy.729891?

Razy.729891 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment