Malware

Razy.867799 (B) removal instruction

Malware Removal

The Razy.867799 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.867799 (B) virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.867799 (B)?


File Info:

crc32: 7F9D9C4A
md5: 90a7b77aa4521e0e26fdfde33ae1265c
name: 90A7B77AA4521E0E26FDFDE33AE1265C.mlw
sha1: daf2c7dd15b8456e1d11e3dde5d29807bc2b1a85
sha256: c3e9c648b65e46b60f11709b583d97f0b1c15a6a97e9f078779ccbebdf89fe24
sha512: 9dd5068c309f433827317d63120abde0ad4e5ce2a96e8def2773f48882792717db66735d03d75f7a4e97fa30493c80300bf14ffc88aba0252745885812515c97
ssdeep: 24576:zUqPzwjzLFgyYyAvnPfcBnzF3+Y8HB+g7lpuP7:DQ2/BcBnzFOlB3vuP7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2021 Simon Tatham.
InternalName: PuTTY
FileVersion: Release 0.75 (with embedded help)
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.75
FileDescription: SSH, Telnet, Rlogin, and SUPDUP client
OriginalFilename: PuTTY
Translation: 0x0809 0x04b0

Razy.867799 (B) also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.867799
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaBackdoor:Win32/Swrort.024768d5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.WI
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Cometer.gen
BitDefenderGen:Variant.Razy.867799
MicroWorld-eScanGen:Variant.Razy.867799
Ad-AwareGen:Variant.Razy.867799
SophosML/PE-A + ATK/Shellter-C
F-SecureHeuristic.HEUR/AGEN.1125217
BitDefenderThetaGen:NN.ZexaF.34722.hz0@aWV3oLji
TrendMicroTROJ_GEN.R005C0DF321
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.90a7b77aa4521e0e
EmsisoftGen:Variant.Razy.867799 (B)
JiangminBackdoor.Generic.bsne
AviraHEUR/AGEN.1125217
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Swrort.A
ArcabitTrojan.Razy.DD3DD7
ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
GDataWin32.Trojan.PSE.1CSXMNU
AhnLab-V3Trojan/Win.FAG.C4461087
McAfeeMalHeur-FAG!90A7B77AA452
MAXmalware (ai score=80)
VBA32BScope.Trojan.Starter
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R005C0DF321
RisingTrojan.Generic@ML.90 (RDML:rPMHtnW04ZWGQlgCMy+EfQ)
IkarusTrojan.Win32.Rozena
FortinetW32/Shellter.C!tr
AVGFileRepMalware

How to remove Razy.867799 (B)?

Razy.867799 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment