Malware

Razy.913371 malicious file

Malware Removal

The Razy.913371 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.913371 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Razy.913371?


File Info:

crc32: 4DD1EA9C
md5: b4ee5e27a9f0fac95245ac9a97777f6b
name: B4EE5E27A9F0FAC95245AC9A97777F6B.mlw
sha1: a5fb8f3408713d3cb523aac9cdc6363591e29df7
sha256: a92d3e6347f89dc1d12cc23fc878033788f482bb49c4f9816d4e75e0a9c56890
sha512: cd49924d75bc3dab31cfda86696b2c1fafdf26a0724a61538136878e1549e5a5a653f450744d4dd7b8da2ee7823da2257b355abc6d8b825ae59b2a0afd7f311a
ssdeep: 1536:8j8PZQ0NLyTST6RGFohj3zjfvLHCky6aZm0r8RQjwBp7msPqTr0:Y0QHT060G93zjfvLHdypm0ARQEBp7m3g
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 1988-2000 Microsoft Corp. All rights reserved.
InternalName: verswitch
FileVersion: 2000.080.0194.00
CompanyName: Microsoft Corporation
LegalTrademarks: Microsoftxae x662f Microsoft Corporation x7684x6ce8x518cx5546x6807x3002Windows(TM) x662f Microsoft Corporation x7684x6ce8x518cx5546x6807
ProductName: Microsoft SQL Server
ProductVersion: 8.00.194
FileDescription: SQL Server x7248x672cx5207x6362x5b9ex7528x5de5x5177
OriginalFilename: vswitch.exe
Translation: 0x0804 0x04b0

Razy.913371 also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.913371
CylanceUnsafe
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Virut.976c82e3
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.408713
CyrenW32/Virut.AM.gen!Eldorado
APEXMalicious
AvastWin32:Vitro [Inf]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.913371
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.913371
TencentWin32.Trojan.Generic.Phgo
Ad-AwareGen:Variant.Razy.913371
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34266.gu0@aqwsDQdb
TrendMicroTROJ_GEN.R002C0WHP21
McAfee-GW-EditionBehavesLike.Win32.Virut.nm
FireEyeGeneric.mg.b4ee5e27a9f0fac9
EmsisoftGen:Variant.Razy.913371 (B)
JiangminTrojan.Generic.hajhv
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Razy.913371
McAfeeArtemis!B4EE5E27A9F0
MAXmalware (ai score=89)
VBA32Trojan.Sabsik.FL
TrendMicro-HouseCallTROJ_GEN.R002C0WHP21
YandexTrojan.GenAsa!gVHZ2hPdqJM
FortinetW32/CoinMiner.F
AVGWin32:Vitro [Inf]

How to remove Razy.913371?

Razy.913371 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment