Malware

Razy.755774 information

Malware Removal

The Razy.755774 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.755774 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Starts servers listening on 0.0.0.0:443
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to modify desktop wallpaper
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Mimics the file times of a Windows system file
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Operates on local firewall’s policies and settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.755774?


File Info:

crc32: 01E49837
md5: a17baacaf7fa22a3bbaa82bd5b289b8e
name: A17BAACAF7FA22A3BBAA82BD5B289B8E.mlw
sha1: 937af8d294db65549b933d739c2ecfc7f407bbbe
sha256: 443b19b3c0fba30ae1ffbce26f5c84a54ca52222d3088c30b3af6ac3853519f3
sha512: 1f7abff4ec882384048f307a6d2eb12e38af6dbf9bbcc6c20f2690cc370572b8ba2dafe7dafee4b5b2917b6a7097bc1227d2e62cc223e7e2a52bb8a98d10ad9f
ssdeep: 24576:XV4ua4X6nplpqvK48mvd7YKfTpf+HUI7C:qua4+lQvK9WNf+0I7
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.755774 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Dridex.734
MicroWorld-eScanGen:Variant.Razy.755774
FireEyeGeneric.mg.a17baacaf7fa22a3
Qihoo-360HEUR/QVM39.1.455B.Malware.Gen
McAfeeGenericRXLZ-SM!A17BAACAF7FA
MalwarebytesTrojan.Dridex
VIPRETrojan.Win32.Generic!BT
SangforMalware
BitDefenderGen:Variant.Razy.755774
CrowdStrikewin/malicious_confidence_100% (D)
InvinceaML/PE-A
BitDefenderThetaGen:NN.ZedlaF.34634.aP4@aOk@Cfgi
CyrenW32/S-b415d9c2!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Keylogger.Zusy-9770855-0
KasperskyHEUR:Trojan-Banker.Win32.Cridex.pef
NANO-AntivirusTrojan.Win32.Cridex.hvjkqr
RisingTrojan.Kryptik!8.8 (TFE:1:XaZ8jKDWdXU)
Ad-AwareGen:Variant.Razy.755774
EmsisoftGen:Variant.Razy.755774 (B)
F-SecureHeuristic.HEUR/AGEN.1138156
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
IkarusTrojan.Win32.Crypt
JiangminTrojan.Banker.Cridex.ahq
AviraHEUR/AGEN.1138156
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Dridex.MS!MTB
GridinsoftTrojan.Win32.Kryptik.oa!s2
ArcabitTrojan.Razy.DB883E
ZoneAlarmHEUR:Trojan-Banker.Win32.Cridex.pef
GDataGen:Variant.Razy.755774
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dridex.R351730
ALYacGen:Variant.Razy.755774
APEXMalicious
ESET-NOD32a variant of Win32/Kryptik.HGDI
TencentMalware.Win32.Gencirc.10ce12da
SentinelOneStatic AI – Malicious PE
FortinetW32/Dridex.DK!tr
AVGWin32:BankerX-gen [Trj]
MaxSecureBanker.Win64.Emotet.sb

How to remove Razy.755774?

Razy.755774 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment