Malware

Razy.136477 (file analysis)

Malware Removal

The Razy.136477 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.136477 virus can do?

    How to determine Razy.136477?

    
    

    File Info:

    crc32: 2FA123FA
    md5: 18253cb12695b1a23f96a813d630ddb0
    name: 18253CB12695B1A23F96A813D630DDB0.mlw
    sha1: 92e5905c023bf6f7867af6ce8cbbde8a1ed6e86e
    sha256: 302d4975e56111d8b30c1b047621c1950b36360577cb0d05ad8c1ad32686f2c2
    sha512: d5079d26b4a58318db36399ca0534963af096caedf25945a7eaed7fb5c919dcf66118e4c5c2716fd40a18c0a0b6b9adc6c166d05872848b64782a5c4ed3be496
    ssdeep: 6144:5+yNZ//Wp5W0sk2Mnd2+X9QJ3Y2NnwYzpYIk4xJjCQob1nfDPLd8H:dop5WPk2McmQyEla4HfYLL+H
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: turingmachine
    Assembly Version: 1.3.0.0
    InternalName: turingmachine.exe
    FileVersion: 1.3.0.0
    CompanyName: turingmachine
    LegalTrademarks: turingmachine
    Comments: turingmachine
    ProductName: turingmachine
    ProductVersion: 1.3.0.0
    FileDescription: turingmachine
    OriginalFilename: turingmachine.exe

    Razy.136477 also known as:

    Elasticmalicious (high confidence)
    DrWebTrojan.DownLoader23.56616
    CynetMalicious (score: 100)
    ALYacGen:Variant.Razy.136477
    CylanceUnsafe
    SangforTrojan.Win32.Save.a
    CrowdStrikewin/malicious_confidence_90% (W)
    Cybereasonmalicious.12695b
    CyrenW32/MSIL_Agent.BQE.gen!Eldorado
    SymantecML.Attribute.HighConfidence
    ESET-NOD32a variant of MSIL/Agent.AFK
    APEXMalicious
    AvastWin32:RATX-gen [Trj]
    ClamAVWin.Trojan.Generic-6898101-0
    KasperskyHEUR:Backdoor.MSIL.Quasar.gen
    BitDefenderGen:Variant.Razy.136477
    MicroWorld-eScanGen:Variant.Razy.136477
    TencentMsil.Backdoor.Quasar.Dwth
    Ad-AwareGen:Variant.Razy.136477
    SophosTroj/Subti-A
    BitDefenderThetaGen:NN.ZemsilF.34628.tm0@aysFE4e
    McAfee-GW-EditionBehavesLike.Win32.Generic.fh
    FireEyeGeneric.mg.18253cb12695b1a2
    EmsisoftGen:Variant.Razy.136477 (B)
    SentinelOneStatic AI – Malicious PE
    AviraHEUR/AGEN.1108475
    eGambitTrojan.Generic
    MicrosoftBackdoor:MSIL/Quasar.GG!MTB
    ArcabitTrojan.Razy.D2151D
    ZoneAlarmHEUR:Trojan.MSIL.Quasar.gen
    GDataGen:Variant.Razy.136477
    AhnLab-V3Trojan/Win32.Hooker.R331578
    McAfeeArtemis!18253CB12695
    MAXmalware (ai score=87)
    MalwarebytesBackdoor.Quasar
    PandaTrj/GdSda.A
    RisingBackdoor.XRat!1.D01D (CLASSIC)
    IkarusTrojan.MSIL.Agent
    FortinetMSIL/Agent.BEU!tr
    AVGWin32:RATX-gen [Trj]
    Paloaltogeneric.ml
    Qihoo-360Win32/Backdoor.Quasar.HgIASQ0A

    How to remove Razy.136477?

    Razy.136477 removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment