Malware

About “Razy.941777” infection

Malware Removal

The Razy.941777 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.941777 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Razy.941777?


File Info:

crc32: B9213503
md5: 2615da5d529240ffda5b8fa641657a67
name: 2615DA5D529240FFDA5B8FA641657A67.mlw
sha1: 91e3e68d809b300e1955d56beed4086484dfab8b
sha256: be2cfa72add7b4d1874697bbcaa27be718fe30b9e13283c4045970e64b79a165
sha512: db4b53558530cbb15d8a38ee00d3f8e0235bc4e1a76f78cd68bf3fb7fb91a1bc9dc2171cfbedbc81836a6a0addf38132ae6cfcb7f0a7a24b0ec061cfa71aa5c6
ssdeep: 1536:thpl7ZvaDFZ1U2Q2ILtjsjNHHo4J5512tTQ/Pl2usghY:trl7ZypZ+12ILtYjNno4J5z2876
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0404 0x04b0
LegalCopyright: Jumping
InternalName: Vkstens8
FileVersion: 4.04.0001
CompanyName: Jumping
LegalTrademarks: Jumping
Comments: Jumping
ProductName: Jumping
ProductVersion: 4.04.0001
FileDescription: Jumping
OriginalFilename: Vkstens8.exe

Razy.941777 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Mucc.4!c
Elasticmalicious (high confidence)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/VBKrypt.BAO.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EQDW
APEXMalicious
AvastFileRepMetagen [Malware]
BitDefenderGen:Variant.Razy.941777
MicroWorld-eScanTrojan.GenericKD.47026144
Ad-AwareTrojan.GenericKD.47026144
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZevbaF.34170.fm0@a8GBzonb
McAfee-GW-EditionBehavesLike.Win32.Fareit.mm
FireEyeGeneric.mg.2615da5d529240ff
SentinelOneStatic AI – Suspicious PE
KingsoftWin32.Troj.Mucc.r.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmTrojan.Win32.Mucc.rvm
GDataWin32.Trojan.Agent.RITNA6
McAfeeRDN/GuLoader
MAXmalware (ai score=84)
IkarusTrojan.VB.Crypt
FortinetW32/EQDW!tr
AVGFileRepMetagen [Malware]

How to remove Razy.941777?

Razy.941777 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment