Razy

Category: infostealer · Aliases: None known · Sample count (EMBER 2018): 3,391 · Enrichment: hand-curated · Updated: 2026-05-27

Overview

Razy is a generic trojan classification used by Kaspersky and several other AV vendors for samples that exhibit malicious behavior but do not match a more specific family signature. Razy detections often correspond to dropper, downloader, or info-stealer behavior and warrant further analysis for definitive attribution.

Frequently Asked Questions

What is Razy?

Razy is a generic trojan classification used by Kaspersky and several other AV vendors for samples that exhibit malicious behavior but do not match a more specific family signature. Razy detections often correspond to dropper, downloader, or info-stealer behavior and warrant further analysis for definitive attribution.

How does Razy spread?

Razy is a browser-targeting infostealer distributed through cracked software downloads and malicious browser extension stores.

What are the signs of a Razy infection?

Unauthorized browser extensions, cryptocurrency wallet address substitution in copy-paste, and AV detections for Razy are diagnostic.

What should I do if I think I have Razy on my system?

If you suspect this malware on your system, do not attempt manual removal. Contact SystemHelpdesk expert MSP support at 855-783-7555 for professional incident response guidance.

Need help with an active incident? If you suspect this malware on your system, do not attempt manual removal. Contact SystemHelpdesk expert MSP support at 855-783-7555 for professional incident response guidance.

Machine-readable

Get this profile as JSON: https://jordanricky1604-ship-it.github.io/malware-families-catalog/api/razy.json

About this catalog

This profile is part of the Malware Families Catalog, a public dataset of 2,899 malware families extracted from the EMBER 2018 benchmark. The catalog is also published on Hugging Face and Kaggle.