Malware

About “Razy.205960” infection

Malware Removal

The Razy.205960 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.205960 virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.205960?


File Info:

crc32: 93721ACF
md5: 6310b720c949199deb6c9e67898c55d5
name: 6310B720C949199DEB6C9E67898C55D5.mlw
sha1: 32506e9fd0960dd241e2be5bfade0a579bfd3ef4
sha256: 1a58fc4c2b3fa98935eca2276394d15f7ee01aca91ce1203ca9856ad39e9eaf0
sha512: d9d1972515eb332b92c3e8daabbdd0a37f902be1ed53f00f1b0dbab39e72afd6ce6175f2c2eb7360ee201f389fee54e6b3e9f2bc2cfe359c282521581ee1730a
ssdeep: 1536:b+ERR8o3CiGNUc5LvWQkZ55+s0yn3Vk2quI6:bR8o3Ci/c5LuZjt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: SelfCert
FileVersion: 2.00.0022
CompanyName: Microsoft Corporation
ProductName: SelfCert
ProductVersion: 2.00.0022
FileDescription: Create a self-signed digital certificate
OriginalFilename: SelfCert.exe

Razy.205960 also known as:

BkavW32.AIDetect.malware1
LionicVirus.Win32.Generic.n!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.205960
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
Cybereasonmalicious.0c9491
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:WrongInf-A [Susp]
BitDefenderGen:Variant.Razy.205960
MicroWorld-eScanGen:Variant.Razy.205960
Ad-AwareGen:Variant.Razy.205960
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Swisyn.cz
FireEyeGeneric.mg.6310b720c949199d
EmsisoftGen:Variant.Razy.205960 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Zpevdo.B
GDataGen:Variant.Razy.205960
Acronissuspicious
McAfeeArtemis!6310B720C949
MAXmalware (ai score=99)
PandaTrj/CI.A
YandexTrojan.Rogue!DbEVGSfHDb8
IkarusTrojan.Patched
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:WrongInf-A [Susp]
Paloaltogeneric.ml

How to remove Razy.205960?

Razy.205960 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment