Malware

Razy.778593 information

Malware Removal

The Razy.778593 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.778593 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Razy.778593?


File Info:

name: 372A61E5D1470D526AE5.mlw
path: /opt/CAPEv2/storage/binaries/93e0c642e8235b13ee2da5a2fb780c9c9605f3fcbb34d8b08a490f0ac5335fdd
crc32: 2846868B
md5: 372a61e5d1470d526ae531d6cdb8d162
sha1: 3844c581fbec099dcdc76525bbcbdcca3898cf7f
sha256: 93e0c642e8235b13ee2da5a2fb780c9c9605f3fcbb34d8b08a490f0ac5335fdd
sha512: 937478aa77c9e2b6d34a689f9edde16ee500ba1f7b8dd4f1307abb48c6b10a2f8d66cb525a2cf0da7b76a037ca99ae09b2af4a846a3ea97227e6a69d30547cb7
ssdeep: 6144:VJGVGOaEO9FfrO+mFeC0I2ajPeNrbc67dANNG8zieDB73sU9wEie+iuv5pvUZASs:VzO4tceDI1krbcol8zie973wEnw3MZCJ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T17CA4CF96E3D6EA12CFD90373279AA5F30D9FF65D41E6B3C93610018E8AA54E016FC46C
sha3_384: 7891168b42ccd18c3c66acb36ec8d58bc598d9d52058b80f62f49314d77a8490ec5b5c88bd76e9d593778844e8676fab
ep_bytes: 354fb1856526350260c73c9372855429
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Razy.778593 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Selfmod.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.778593
FireEyeGeneric.mg.372a61e5d1470d52
CAT-QuickHealTrojan.Glupteba.S17270700
SkyhighBehavesLike.Win32.Backdoor.gc
ALYacGen:Variant.Razy.778593
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Razy.778593
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Glupteba.25fba2f4
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.1fbec0
ArcabitTrojan.Razy.DBE161 [many]
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9873608-0
KasperskyUDS:Trojan.Win32.Convagent.gen
BitDefenderGen:Variant.Razy.778593
NANO-AntivirusTrojan.Win32.Copak.jwasxf
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Selfmod.kg
EmsisoftGen:Variant.Razy.778593 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
ZillyaTrojan.Kryptik.Win32.3263580
SophosMal/Inject-GJ
IkarusTrojan-Downloader.Win32.FakeAlert
JiangminTrojan.Generic.gcbrx
VaristW32/Trojan.NJGF-3047
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.997
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmHEUR:Trojan.Win32.Convagent.gen
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.R620290
Acronissuspicious
McAfeeTrojan-FVOQ!372A61E5D147
TACHYONTrojan/W32.Selfmod
VBA32Trojan.Khalesi
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
YandexTrojan.Selfmod!NSpQYapoEX4
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
BitDefenderThetaGen:NN.ZexaF.36608.C4Z@aiNtz3j
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Razy.778593?

Razy.778593 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment