Malware

Razy.783340 (file analysis)

Malware Removal

The Razy.783340 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.783340 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Presents an Authenticode digital signature
  • Possible date expiration check, exits too soon after checking local time
  • Starts servers listening on 127.0.0.1:0
  • Performs some HTTP requests

Related domains:

du.testjj.com
ocsp.digicert.com
da.testiu.com
db.testyk.com

How to determine Razy.783340?


File Info:

crc32: D6FB38E7
md5: 340349a5d4ba3e18caafe565c0296ac4
name: 340349A5D4BA3E18CAAFE565C0296AC4.mlw
sha1: 6223224a0aa34a40d6ed6ef1200ceef4fa19e5bf
sha256: fa824ec8b18dbe36318ff03e7fbf974bd6c8a6256f3449d4bf77082355553445
sha512: 6261ae41e89469fb1590fc216e45eec2c21723e81e8b3a984998b34beba8c81877e36ac694d6cb903aec02ec022bc07f5578dd89f68ade1d8661187172d0bbfc
ssdeep: 12288:SfT+l3f1HiVkn/RyWZyh+RUFUjImQdqS4DtcQqvRWqyZrJ67GfsyZVpUEJDv0NYw:SfW3NHiKnSlwIFYS4DtcQqpYT7VpHlJq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
FileVersion: 1.0.0.2
ProductVersion: 1.0.0.2
Translation: 0x1809 0x04b0

Razy.783340 also known as:

BkavW32.AIDetectVM.malware1
K7AntiVirusAdware ( 004e04e61 )
DrWebTrojan.Rootkit.22087
CynetMalicious (score: 85)
CAT-QuickHealTrojan.Kuping
ALYacGen:Variant.Razy.783340
CylanceUnsafe
ZillyaTrojan.MaganiaCRTD.Win32.11362
SangforMalware
AlibabaTrojan:Win32/Generic.879d12e9
K7GWAdware ( 004e04e61 )
Cybereasonmalicious.5d4ba3
CyrenW32/Adware.VAPJ-8432
SymantecTrojan.Gen.MBT
AvastWin32:Adware-gen [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.783340
NANO-AntivirusTrojan.Win32.Johnnie.ialzwv
MicroWorld-eScanGen:Variant.Razy.783340
TencentWin32.Trojan.Falsesign.Lgjj
Ad-AwareGen:Variant.Razy.783340
SophosGeneric PUA GC (PUA)
F-SecureTrojan.RKIT/Agent.xdjdp
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PJI20
McAfee-GW-EditionRDN/Generic PUP.z
FireEyeGeneric.mg.340349a5d4ba3e18
EmsisoftGen:Variant.Razy.783340 (B)
JiangminTrojan.Generic.grvin
WebrootW32.Adware.Gen
AviraRKIT/Agent.xdjdp
Antiy-AVLTrojan/Win32.Generic
MicrosoftPUA:Win32/Kuping
ArcabitTrojan.Razy.DBF3EC
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Razy.783340
McAfeeRDN/Generic PUP.z
MAXmalware (ai score=89)
VBA32Trojan.Rootkit
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PJI20
RisingTrojan.Mlxg!1.CBEA (CLASSIC)
YandexTrojan.Agent!wfKZ8qg5p1A
IkarusRootkit.Agent
MaxSecureTrojan.Malware.7164915.susgen
FortinetRiskware/Generic
AVGWin32:Adware-gen [Adw]
Qihoo-360Generic/Trojan.251

How to remove Razy.783340?

Razy.783340 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment