Malware

Razy.251262 removal instruction

Malware Removal

The Razy.251262 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.251262 virus can do?

  • Executable code extraction
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
edgedl.me.gvt1.com
update.googleapis.com

How to determine Razy.251262?


File Info:

crc32: 3A6F7D8A
md5: 1c6038a18b6981f5f0a805b0370a387f
name: 1C6038A18B6981F5F0A805B0370A387F.mlw
sha1: 8e549302ef4d7f672ab5e118185d48bfc3863a10
sha256: 02f21ba9ecf347be1543a5bce2acee7251833a5ba193d019ba8fd3e1fbe8009f
sha512: 0457c89142fc2e4e912cfc27e2a4dc82a7b59717ad1c3c49cf48941587ebee6695ae4392f9ff525afad70d16d07b360ec9b7af87a981c53a2718563799901abf
ssdeep: 768:4EBHjXpVFYvIi/eGhfpSxJt3bv1Ph1cHVv1HXeRHQIoqUL7EBH:4mDZgAKfpSxJt3hPh1cHTHXeRwIoHL7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0c0a 0x04b0
LegalCopyright: DogieMLites 62
InternalName: DogieMLites 62
FileVersion: 14.17.0004
CompanyName: DogieMLites 62
LegalTrademarks: DogieMLites 62
Comments: DogieMLites 62
ProductName: DogieMLites_62
ProductVersion: 14.17.0004
FileDescription: DogieMLites 62
OriginalFilename: DogieMLites 62.exe

Razy.251262 also known as:

K7AntiVirusPassword-Stealer ( 005256a41 )
CAT-QuickHealTrojan.OverVMF.S20098687
ALYacGen:Variant.Razy.251262
CylanceUnsafe
ZillyaTrojan.VB.Win32.176810
SangforTrojan.Win32.VB.NON
AlibabaTrojanPSW:Win32/Emogen.ab288538
K7GWPassword-Stealer ( 005256a41 )
Cybereasonmalicious.18b698
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/PSW.VB.NON
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Razy.251262
NANO-AntivirusTrojan.Win32.VB.fdrmvw
MicroWorld-eScanGen:Variant.Razy.251262
Ad-AwareGen:Variant.Razy.251262
SophosMal/Generic-R + Mal/Emogen-B
ComodoTrojWare.Win32.TrojanDownloader.VB.PMEA@4rev5s
F-SecureHeuristic.HEUR/AGEN.1127413
BitDefenderThetaGen:NN.ZevbaF.34266.cm0@aKJi6eR
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDQ-WR!1C6038A18B69
FireEyeGeneric.mg.1c6038a18b6981f5
EmsisoftGen:Variant.Razy.251262 (B)
AviraHEUR/AGEN.1127413
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Heur.KVM006.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C02
ArcabitTrojan.Razy.D3D57E
GDataGen:Variant.Razy.251262
AhnLab-V3Worm/Win.Autorun.R425907
McAfeeGenericRXDQ-WR!1C6038A18B69
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
YandexTrojan.GenAsa!MgkIsFXZQ2s
IkarusTrojan-PSW
FortinetW32/VB.NON!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Razy.251262?

Razy.251262 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment