Malware

Should I remove “Razy.765442”?

Malware Removal

The Razy.765442 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.765442 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.765442?


File Info:

crc32: 73C35846
md5: 849ba3d6cd7d2238c8bc0a22996cb89e
name: upload_file
sha1: cec60ee34c6bdff7b09b23c2e8166aca3171e8b2
sha256: c307f86ab5e3cc34c08e557ca6805bd8f0e024516c85b26516a5c35f1c516064
sha512: 9f1fd76e89d6441c6190028cb7b14bc30ddd08d30b54a1d6cb5a5cb23a0f4cc59f4a91db7033438ac87af53a7ff3e75f0ea87735319000aa7e010133c607d055
ssdeep: 3072:KwF0HoJELPdSNpUAT1pn4CSGJbmlbRzZupNtIJ/o5HfOZSsygK23CmDhQlDY2uLR:p0HLYBOktU/MfOZ9x3ZDyaOEGnbra
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2016
InternalName: 360realpro.exe
FileVersion: 8,8,0,1000
OriginalFilename: 360realpro.exe
ProductVersion: 8,8,0,1000
Translation: 0x0409 0x04b0

Razy.765442 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.765442
ALYacTrojan.Agent.ZLoader
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.Razy.765442
K7GWSpyware ( 0040f0131 )
K7AntiVirusSpyware ( 0040f0131 )
TrendMicroTROJ_GEN.R069C0RJ820
CyrenW32/Trojan.FKQA-3982
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyTrojan-Downloader.Win32.Zload.vd
AlibabaTrojanDownloader:Win32/Zload.76000750
ViRobotTrojan.Win32.Z.Zbot.399192
AegisLabTrojan.Win32.Zload.a!c
TencentWin32.Trojan-downloader.Zload.Eanj
Ad-AwareGen:Variant.Razy.765442
EmsisoftTrojan-Downloader.Cridex (A)
ComodoMalware@#1upfb735m1tfe
F-SecureTrojan.TR/Spy.Zbot.owcbz
DrWebTrojan.PWS.Spy.21499
InvinceaML/PE-A + Mal/EncPk-APV
McAfee-GW-EditionRDN/Generic PWS.y
MaxSecureTrojan.Malware.82442812.susgen
FireEyeGeneric.mg.849ba3d6cd7d2238
SophosMal/EncPk-APV
IkarusTrojan-Spy.Agent
JiangminTrojanDownloader.Zload.dx
AviraTR/Spy.Zbot.owcbz
MAXmalware (ai score=85)
Antiy-AVLGrayWare/Win32.Kryptik.ehls
MicrosoftTrojan:Win32/Ymacco.AAA7
ArcabitTrojan.Razy.DBAE02
ZoneAlarmTrojan-Downloader.Win32.Zload.vd
GDataWin32.Trojan-Downloader.ZLoader.MP3K9L
CynetMalicious (score: 100)
McAfeeRDN/Generic PWS.y
VBA32BScope.Malware-Cryptor.SB.01798
MalwarebytesTrojan.MalPack.DGI
PandaTrj/GdSda.A
ESET-NOD32Win32/Spy.Zbot.ADI
TrendMicro-HouseCallTROJ_GEN.R069C0RJ820
RisingTrojan.Generic@ML.99 (RDML:3lpkivILWfWvBAxGqTsyrg)
eGambitUnsafe.AI_Score_82%
FortinetW32/Zbot.ADI!tr.spy
BitDefenderThetaGen:NN.ZedlaF.34566.yu9@aGX9Eeni
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Downloader.4ea

How to remove Razy.765442?

Razy.765442 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment