Malware

Razy.776556 information

Malware Removal

The Razy.776556 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.776556 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Sniffs keystrokes

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.776556?


File Info:

crc32: 7CB78FF3
md5: 08795ead8c6632fc8eac274b02c799c3
name: 08795EAD8C6632FC8EAC274B02C799C3.mlw
sha1: 72af6169fb8dbbe24bf63a3cfe71f36265a021f4
sha256: 016af6d3b6e8b6dcd473a6efdaafd389da2f8cbe91d974f2ed842fbbbcc67c4c
sha512: 9d91eda0cc816c76648aef3e2c27d9ad6804f14d98f791f67d8292dd7242e4833de171b270e0d0d2d0687641d77ffaa35a140753b843142808f9ee89a0883ae2
ssdeep: 3072:NLofmSQTNlqJSz+njsLVhRdUyU2y9UTaRLV5OgI:+mdq2+njQbUyUlyOpI
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: AssemblyChange.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: AssemblyChange.exe

Razy.776556 also known as:

K7AntiVirusTrojan ( 00327d911 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader4.56564
CynetMalicious (score: 99)
CAT-QuickHealTrojan.GenericFC.S21583556
ALYacGen:Variant.Razy.776556
CylanceUnsafe
SangforTrojan.Win32.Dropper.Gen
K7GWTrojan ( 00327d911 )
Cybereasonmalicious.d8c663
BaiduWin32.Trojan.Agent.apc
CyrenW32/Agent.AEV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.THC
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Agent-416534
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.776556
NANO-AntivirusTrojan.Win32.Dwn.pzvet
MicroWorld-eScanGen:Variant.Razy.776556
TencentMalware.Win32.Gencirc.10bb562e
Ad-AwareGen:Variant.Razy.776556
SophosMal/Generic-S + Mal/SpyGate-A
ComodoMalware@#2vpl6c7esht5k
BitDefenderThetaGen:NN.ZemsilF.34294.iq0@ayyfJLi
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_AGENT_EK0403E1.UVPM
McAfee-GW-EditionGenericRXQH-ES!08795EAD8C66
FireEyeGeneric.mg.08795ead8c6632fc
EmsisoftGen:Variant.Razy.776556 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
eGambitRAT.ShadowTech
Antiy-AVLTrojan/Generic.ASMalwS.1CAC8D
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Razy.DBD96C
SUPERAntiSpywareTrojan.Agent/Gen-MSIL
GDataGen:Variant.Razy.776556
AhnLab-V3Trojan/Win32.Comrerop.R119902
McAfeeGenericRXQH-ES!08795EAD8C66
MAXmalware (ai score=84)
VBA32Backdoor.MSIL.Shara
MalwarebytesHackTool.Agent.ACGen
PandaGeneric Malware
TrendMicro-HouseCallTROJ_AGENT_EK0403E1.UVPM
RisingBackdoor.Shadow!1.6A6A (CLASSIC)
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.DN.11A875!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Razy.776556?

Razy.776556 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment