Malware

Razy.778593 malicious file

Malware Removal

The Razy.778593 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.778593 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Razy.778593?


File Info:

name: 62E2A8239DD7CAA0B70D.mlw
path: /opt/CAPEv2/storage/binaries/095d4484561944822746e773d4e5324a8a2c88ff1f5f3a6cad6ef4f82167c725
crc32: BB8AF895
md5: 62e2a8239dd7caa0b70d69c175c7c2c4
sha1: 32519e5f4f69393ad7f460bd061444744e70a031
sha256: 095d4484561944822746e773d4e5324a8a2c88ff1f5f3a6cad6ef4f82167c725
sha512: a4cedffd6f8e01a76f6993c71fd47c0f7117e411eb15a54667de1b00170f60e7362d304c5eea2fb288d80cb3a2cb23ea8a3df676b8115b7e9caa6aa7d1c302e7
ssdeep: 6144:NwdEyGThhsSZQYVbfrbc67dANNG8zieDB73sU9wEie+iuv5pvUZASND2Hp:NwdSThjbVDrbcol8zie973wEnw3MZCJ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11FA4C096D2053FB2DA9CD3F8637A43B30A777A6C0315B3FA78A8524D89A244359DC71C
sha3_384: 3adb8fe3f2f94ff9d4e4517abe87d1ae7dbdee05cb3a64bec45d3295eab88969a41c6a9670b0667ce5e5b42b064f6803
ep_bytes: d63c03a38655872483b48eb591f6e60f
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Razy.778593 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Glupteba.S17270700
SkyhighBehavesLike.Win32.Generic.gc
ALYacGen:Variant.Razy.778593
Cylanceunsafe
ZillyaTrojan.Kryptik.Win32.3263580
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
BitDefenderGen:Variant.Razy.778593
K7GWTrojan ( 005766931 )
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
APEXMalicious
ClamAVWin.Packed.Razy-9873608-0
KasperskyUDS:Trojan.Win32.Convagent.gen
NANO-AntivirusTrojan.Win32.Selfmod.ivuout
MicroWorld-eScanGen:Variant.Razy.778593
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SophosMal/Inject-GJ
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen25.39438
VIPREGen:Variant.Razy.778593
FireEyeGeneric.mg.62e2a8239dd7caa0
EmsisoftGen:Variant.Razy.778593 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Selfmod.bbhb
VaristW32/Trojan.NJGF-3047
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.997
MicrosoftTrojan:Win32/Glupteba.MT!MTB
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Razy.DBE161 [many]
ZoneAlarmHEUR:Trojan.Win32.Convagent.gen
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.R620290
Acronissuspicious
McAfeeTrojan-FVOQ!62E2A8239DD7
TACHYONTrojan/W32.Selfmod
VBA32Trojan.Khalesi
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TencentTrojan.Win32.Copak.kq
YandexTrojan.Selfmod!NSpQYapoEX4
IkarusTrojan-Downloader.Win32.FakeAlert
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
BitDefenderThetaGen:NN.ZexaF.36744.C4Z@aiNtz3j
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.f4f693
DeepInstinctMALICIOUS

How to remove Razy.778593?

Razy.778593 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment