Malware

Should I remove “Razy.736773 (B)”?

Malware Removal

The Razy.736773 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.736773 (B) virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Collects information to fingerprint the system

Related domains:

charm.bizfxr.com

How to determine Razy.736773 (B)?


File Info:

crc32: 5CD6CED2
md5: b851aa093dfc01edcecc557717765dac
name: upload_file
sha1: 81f33253f10d08190e6f7fb35cdc320f6336de94
sha256: c575c16fb2e5909a027d0ad098d09d4e987313720afed5bcf427c6b20a899ca9
sha512: 52b739ebc0aa58a2a67ae19b34412cb3182455e553a5c1d882daca7c120a57c8a9c44418db932be88eb80ec1b75aae81b669032a8b2cd353a0390173ad4f3577
ssdeep: 24576:RbBcTOkmXlnsJGQkOO4E70B4LxZp5oW06:fCOkUluGQkOO4E708AW06
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: 2005-2018
InternalName: CHARM
FileVersion: 1.09.0850
CompanyName: AmeriTechnology Group, Inc.
Comments: Client auditing, management and asset control software for AMTGI clients.
ProductName: CHARM
ProductVersion: 1.09.0850
FileDescription: Computer Health And Remote Monitoring software exclusively for AMTGI clients.
OriginalFilename: CHARM.exe

Razy.736773 (B) also known as:

MicroWorld-eScanGen:Variant.Razy.736773
McAfeeGenericRXAA-AA!B851AA093DFC
K7AntiVirusUnwanted-Program ( 0053fca61 )
BitDefenderGen:Variant.Razy.736773
K7GWUnwanted-Program ( 0053fca61 )
APEXMalicious
AlibabaRiskWare:Win32/AMTGiMon.df702a25
RisingDropper.Generic!8.35E (CLOUD)
Ad-AwareGen:Variant.Razy.736773
SophosMal/Generic-S
F-SecureTrojan.TR/Dropper.Gen
VIPRETrojan.Win32.Generic!BT
MaxSecureTrojan.Malware.105705916.susgen
FireEyeGeneric.mg.b851aa093dfc01ed
EmsisoftGen:Variant.Razy.736773 (B)
AviraTR/Dropper.Gen
MicrosoftPUA:Win32/Vigua.A
ArcabitTrojan.Razy.DB3E05
GDataGen:Variant.Razy.736773
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.Monitor.R348214
ALYacGen:Variant.Razy.736773
MAXmalware (ai score=81)
CylanceUnsafe
ESET-NOD32a variant of Win32/Monitor.AMTGiMon.B potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CHJ20
FortinetRiskware/AMTGiMon
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Trojan.063

How to remove Razy.736773 (B)?

Razy.736773 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment