Malware

Should I remove “Razy.101302 (B)”?

Malware Removal

The Razy.101302 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.101302 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.101302 (B)?


File Info:

crc32: 68F771B4
md5: 0d6dc1281414276f23933056743e59f0
name: 0D6DC1281414276F23933056743E59F0.mlw
sha1: e9d53c0adf728e6ccbc8a51a8f2efef104aa23b4
sha256: b481cd085b75e2fb70d2c8423f89b6f4c74306241a3e5f3a5eea5bc696b637f2
sha512: 78dd38e07bf92f50f8328cd7a8cdca41771ad7e5b56bb3c81d38b2e85008f2d5eb5ea084dafaaef279d42a98ef769f8e6847cc67a77c971f4b9f783dd3cf3f9f
ssdeep: 3072:bJp7SOQBBc22hf6/tRBORJqeZX9hNJh//K0pbxboX/Fg+LTFkFC6dfTrf4:YBBcL6lRwXVZXVJh/yWxboX/i+Lhk0Yw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Malwarebytes. All rights reserved.
InternalName: mbamservice.exe
FileVersion: 3.2.21.0
CompanyName: Malwarebytes
LegalTrademarks:
ProductName: Malwarebytes Anti-Malware
ProductVersion: 3.2.21.0
FileDescription: Malwarebytes Anti-Malware
OriginalFilename: mbamservice.exe
Translation: 0x0409 0x04e4

Razy.101302 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusPassword-Stealer ( 004cd4f51 )
LionicTrojan.Win32.Vawtrak.tnaE
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Papras.2166
ClamAVWin.Malware.Razy-9869363-0
ALYacGen:Variant.Razy.101302
CylanceUnsafe
ZillyaTrojan.Papras.Win32.5913
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanPSW:Win32/Papras.64923a99
K7GWPassword-Stealer ( 004cd4f51 )
Cybereasonmalicious.814142
SymantecTrojan.Snifula.F
ESET-NOD32Win32/PSW.Papras.EJ
ZonerTrojan.Win32.46040
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Bublik.gen
BitDefenderGen:Variant.Razy.101302
NANO-AntivirusTrojan.Win32.Papras.fefslq
MicroWorld-eScanGen:Variant.Razy.101302
TencentWin32.Trojan.Razy.Hfp
Ad-AwareGen:Variant.Razy.101302
SophosMal/Generic-S
ComodoMalware@#1hz56ex5yx3se
BitDefenderThetaGen:NN.ZexaF.34790.mG0@aWsxn1bi
McAfee-GW-EditionBehavesLike.Win32.Ransomware.dc
FireEyeGeneric.mg.0d6dc1281414276f
EmsisoftGen:Variant.Razy.101302 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.djans
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Variant.Razy.101302
TACHYONBackdoor/W32.Vawtrak.205824
AhnLab-V3Trojan/Win32.Vawtrak.C1611870
Acronissuspicious
McAfeeGenericRXAA-FA!0D6DC1281414
MAXmalware (ai score=100)
VBA32Backdoor.Vawtrak
MalwarebytesTrojan.PasswordStealer
PandaTrj/Genetic.gen
RisingTrojan.Win32.Papras.ed (CLASSIC)
YandexTrojan.GenAsa!AC7OmaRRSGE
IkarusTrojan.Win32.PSW
FortinetW32/Generic.AC.397FEA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HxQBEpsA

How to remove Razy.101302 (B)?

Razy.101302 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment