Malware

Should I remove “Razy.877322”?

Malware Removal

The Razy.877322 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.877322 virus can do?

  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.877322?


File Info:

crc32: FC5CD425
md5: 665908a2dea1a207bdc7281f76bf09c8
name: 665908A2DEA1A207BDC7281F76BF09C8.mlw
sha1: 6e0f61562f1459c1db02bbd8d9b82a48a3772136
sha256: b1b9e2542212b612f2a39607cd1d20508fedccd91486b7b89c4a547feb24ab89
sha512: 9e87dc8c87160b250125a2082e4867fc8b6b7c110d89131dfef76259f53c6ede229e7efad7005a195191a502b7e1d95685438c75c168575e08234bfccce8946f
ssdeep: 1536:/tJZ0L4lyuzJJJOvS4zlJ5jD1tRL1K2EaUT8THhFPl:Vauzkt31/hxEAdl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Eswtpehy Software 2000-2009
InternalName: Eswtpehy
FileVersion: 551
CompanyName: ASD SOFTWIN
ProductName: Eswtpehy Irjhgnh Cdyxjqye
ProductVersion: 5.9
FileDescription: ASD BitDefender
OriginalFilename: Eswtpehy.exe
Translation: 0x0409 0x04e4

Razy.877322 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 002251fa1 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop2.8666
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.877322
CylanceUnsafe
ZillyaTrojan.PornoBlocker.Win32.5910
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/PornoBlocker.72050306
K7GWTrojan ( 002251fa1 )
Cybereasonmalicious.2dea1a
CyrenW32/Skintrim.1!Generic
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Bamital.FG
APEXMalicious
AvastWin32:Kryptik-AVO [Trj]
KasperskyTrojan-Ransom.Win32.PornoBlocker.nca
BitDefenderGen:Variant.Razy.877322
NANO-AntivirusTrojan.Win32.PornoBlocker.ipcjp
SUPERAntiSpywareTrojan.Agent/Gen-Falint
MicroWorld-eScanGen:Variant.Razy.877322
TencentWin32.Trojan.Pornoblocker.Wnwj
Ad-AwareGen:Variant.Razy.877322
SophosMal/Generic-R + Mal/FakeAV-IU
ComodoMalware@#26yafsuj7nfuh
BitDefenderThetaGen:NN.ZexaF.34770.gq0@auhzm1dc
VIPRETrojan-Downloader.Win32.Zurgop.i (v)
McAfee-GW-EditionPWS-Zbot.gen.do
FireEyeGeneric.mg.665908a2dea1a207
EmsisoftGen:Variant.Razy.877322 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/PornoBlocker.dmr
AviraTR/Crypt.XPACK.Gen
MicrosoftTrojan:Win32/Skeeyah.A!rfn
AegisLabTrojan.Win32.PornoBlocker.j!c
GDataGen:Variant.Razy.877322
AhnLab-V3Trojan/Win32.PornoBlocker.C732235
McAfeePWS-Zbot.gen.do
MAXmalware (ai score=100)
PandaBck/Qbot.AO
RisingTrojan.Generic@ML.100 (RDML:53npXW+AHuE9aeMyipW1NQ)
YandexTrojan.PornoBlocker!XwamvxjHIC4
IkarusTrojan-Ransom.PornoBlocker
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.WDN!tr
AVGWin32:Kryptik-AVO [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoBlocker.HgIASOkA

How to remove Razy.877322?

Razy.877322 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment