Malware

How to remove “Razy.442225 (B)”?

Malware Removal

The Razy.442225 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.442225 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Razy.442225 (B)?


File Info:

name: 395C88136F6F37F96A2A.mlw
path: /opt/CAPEv2/storage/binaries/60c20e209764d4e5f24e1b1b12e7d133f0c58a679ef2fabb14acf0c371f9ae14
crc32: 41F764B0
md5: 395c88136f6f37f96a2a21e19d9eb1b5
sha1: 8a5bb382915815b257151fcdf7b6c3a5d77592bd
sha256: 60c20e209764d4e5f24e1b1b12e7d133f0c58a679ef2fabb14acf0c371f9ae14
sha512: ec4e5dccac49f8712ee5dc3828a23d8007fa4a7385528c95ca0a3ee7e5f25b46aadb0ced04bc7cdf2d2eb5733606864461e83e81363c17d8d1cad45a26d49964
ssdeep: 768:yRFEIoSnACdIph63Qlgbdxp45uD65R4UDiFHUBdxuz/TB3V+KtjWwlneL/WD1b6J:ysWnAC6ph6ggxwItYx+d3VjTeoUO37q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T143737C805B5447F0CD47C7B15AFE745C26242F87EC1AB95BA3C1F25EA812DB6A7020EE
sha3_384: 2438d4f24189dc4d4f914d670a9e2e5c2b7a851814147021997b40f5dbf54a829ae940d2aa39dc32f93ce3d3de2276ad
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-01-30 13:15:50

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Crypted.exe
LegalCopyright:
OriginalFilename: Crypted.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Razy.442225 (B) also known as:

LionicTrojan.Win32.Generic.lu1m
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.442225
FireEyeGeneric.mg.395c88136f6f37f9
ALYacGen:Variant.Razy.442225
MalwarebytesTrojan.MalPack.PGen
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004dcb4e1 )
BitDefenderGen:Variant.Razy.442225
K7GWTrojan ( 004dcb4e1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.370A17911F
CyrenW32/MSIL_Troj.PM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.QXY
TrendMicro-HouseCallTROJ_GEN.R014C0PB122
Paloaltogeneric.ml
ClamAVWin.Packed.njRAT-9854168-1
KasperskyHEUR:Trojan-Banker.MSIL.TinyNuke.gen
AlibabaTrojan:Win32/Kryptik.ali2000016
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL:pj4aKXQLRo1Vh2brsUmRkA)
SophosML/PE-A + Mal/Kryptik-DO
DrWebTrojan.PackedNET.82
TrendMicroTROJ_GEN.R014C0PB122
McAfee-GW-EditionBehavesLike.Win32.Generic.lc
SentinelOneStatic AI – Malicious PE
EmsisoftGen:Variant.Razy.442225 (B)
APEXMalicious
AviraTR/Dropper.Gen
MicrosoftBackdoor:Win32/Bladabindi!ml
SUPERAntiSpywareTrojan.Agent/Gen-Virtool
GDataGen:Variant.Razy.442225
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Noancooe.C2833947
McAfeePacked-FPR!395C88136F6F
MAXmalware (ai score=89)
CylanceUnsafe
PandaTrj/GdSda.A
IkarusTrojan.MSIL.Krypt
FortinetMSIL/GenKryptik.CQSD!tr
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.36f6f3
AvastWin32:MalwareX-gen [Trj]

How to remove Razy.442225 (B)?

Razy.442225 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment