Malware

Razy.749472 (file analysis)

Malware Removal

The Razy.749472 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.749472 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Razy.749472?


File Info:

crc32: C3590185
md5: bc059337cca3bad619859ce21d55d670
name: BC059337CCA3BAD619859CE21D55D670.mlw
sha1: 0acc3c3ce4fa62eadb3d0faea18c79fd5d69947d
sha256: 2b9de4d154c2077dd2a16ec42b241e685b9b6856e9407094938a4d80dc2aad32
sha512: 1a4a95f5e85017d1aab6eb3ed8744ad6e4eebe593c58d5a746dab381dc164761a1ec9687f8e66d91715a55347aa2ec33d90381c39b05a19bc1ee750b9da7bf56
ssdeep: 384:wrwgu4oJuTIUqVRwYFqkyUI07jO6qq9fUaIfqfpu/0y+YERl2Y8d6RhyR:IaJeE7FLwIn9fU7qRu/u9Rlb8d
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Razy.749472 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055ebce1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.31458
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Makop
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.13579
SangforRansom.Win32.Phobos.PB!MTB
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/Phobos.f1ee8329
K7GWTrojan ( 0055ebce1 )
Cybereasonmalicious.7cca3b
CyrenW32/Ransom.MM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.Phobos.E
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Makop.aa
BitDefenderGen:Variant.Razy.749472
NANO-AntivirusTrojan.Win32.Rack.hfdiwr
MicroWorld-eScanGen:Variant.Razy.749472
TencentWin32.Trojan.Rack.Pezd
Ad-AwareGen:Variant.Razy.749472
BitDefenderThetaAI:Packer.4261512B1E
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXKC-KV!443DACCB5F7F
FireEyeGeneric.mg.bc059337cca3bad6
EmsisoftGen:Variant.Razy.749472 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Cryptor.pr
AviraHEUR/AGEN.1116831
Antiy-AVLTrojan/Generic.ASMalwS.301895F
MicrosoftRansom:Win32/Phobos.PB!MTB
ArcabitTrojan.Razy.DB6FA0
AegisLabTrojan.Win32.Malicious.4!c
GDataGen:Variant.Razy.749472
AhnLab-V3Malware/Win32.Generic.C4049003
McAfeeArtemis!BC059337CCA3
MAXmalware (ai score=100)
VBA32BScope.TrojanSpy.Zbot
MalwarebytesRansom.Phobos
PandaTrj/GdSda.A
RisingRansom.Phobos!8.10B6C (CLOUD)
YandexTrojan.Filecoder!hyBx9n4PKM8
IkarusTrojan-Ransom.Phobos
MaxSecureTrojan.Malware.83413208.susgen
FortinetW32/Filecoder.48BC!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Razy.749472?

Razy.749472 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment