Malware

Razy.7413 removal instruction

Malware Removal

The Razy.7413 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.7413 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • A process was set to shut the system down when terminated
  • Installs itself for autorun at Windows startup
  • Likely virus infection of existing system binary
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
mr-ibrahacker.zapto.org

How to determine Razy.7413?


File Info:

crc32: 31095513
md5: 03bb2f3b2369ae6de85d5dfa96709aa4
name: 03BB2F3B2369AE6DE85D5DFA96709AA4.mlw
sha1: 79714bfa147fed74c9ffd89e302db606f041e6cf
sha256: ddf61c5246c1a22f91dbc3dea8f9d67fa8dd68d6f72bff390b4bc834b8b5a144
sha512: 2e5a429cff8b6ce184c1b2b60566763e56605bb41d0c1adaff4f4b062c0a552b03e3d8193a565a03c61430f0e5cb6c5d7de048849429ce2a249a2df2a25e0e59
ssdeep: 6144:I5iUSYkpAT8j7diWFskJnAViagDuCwjqNbgu:IRS5pAT8jhs2nByCwjgb
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2010
Assembly Version: 7.10.14.64
InternalName: 2.exe
FileVersion: 11.14.18.72
CompanyName: aq_i_r_L_h_g_
LegalTrademarks: aw_z_F_v_2_I_Z_r_
ProductName: a1_5_9_y_K_i__O_
ProductVersion: 11.14.18.72
FileDescription: au_6_7_5_Q_
OriginalFilename: 2.exe

Razy.7413 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.7413
FireEyeGeneric.mg.03bb2f3b2369ae6d
ALYacGen:Variant.Razy.7413
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 700000121 )
BitDefenderGen:Variant.Razy.7413
K7GWTrojan ( 700000121 )
Cybereasonmalicious.b2369a
CyrenW32/FrauDrop.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Dropper.Zapchast-7778428-0
KasperskyHEUR:Backdoor.MSIL.Generic
NANO-AntivirusTrojan.Win32.Drop.ctqjyu
Ad-AwareGen:Variant.Razy.7413
EmsisoftGen:Variant.Razy.7413 (B)
ComodoTrojWare.MSIL.TrojanDownloader.Small.DS@6ldchl
F-SecureHeuristic.HEUR/AGEN.1127013
DrWebWin32.HLLW.Autoruner2.8907
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SophosMal/Generic-S
IkarusTrojan-Dropper.Win32.FrauDrop
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1127013
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan[Dropper]/Win32.FrauDrop
KingsoftWin32.Troj.FrauDrop.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi
ArcabitTrojan.Razy.D1CF5
ZoneAlarmHEUR:Backdoor.MSIL.Generic
GDataGen:Variant.Razy.7413
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Bladabindi.R100197
McAfeeGeneric Dropper.agu
MAXmalware (ai score=84)
MalwarebytesTrojan.Agent
PandaGeneric Malware
ESET-NOD32a variant of MSIL/Injector.CDG
RisingTrojan.Generic!8.C3 (CLOUD)
YandexTrojan.DR.FrauDrop!KSqO2+903rg
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Agent.D279!tr
BitDefenderThetaGen:NN.ZemsilF.34804.nm0@aWogEce
AVGMSIL:GenMalicious-E [Trj]
AvastMSIL:GenMalicious-E [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.85d

How to remove Razy.7413?

Razy.7413 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment