Malware

Razy.531726 removal instruction

Malware Removal

The Razy.531726 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.531726 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Razy.531726?


File Info:

crc32: 00F73963
md5: 7b118f272e5d40b402825cc921c15d2b
name: cheatcheack.exe
sha1: 86b88181371b5698568871a57a0ecbb4a8e26452
sha256: d55903bd45f5f5f2fb898924ba73c9355070c559adbae89da15490ba110787fb
sha512: 235bf178711e873ada6fd8c59cd1dd8c8ca9d13e6b2857057485f5ed5fc2b0713556872db23bcd43a5f17e48620aeabbda3361ad363fd8894d8bd7c86749085c
ssdeep: 3072:yHfH4KePdHikgCwncB9EJgIy0f9plyCJtxBqdVsNyTCwS/nv8R6hq1AJl:+fH4KelTgC/BjUf9plBsQXwSH8ip
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: WerMgr
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 10.0.17134.1
FileDescription: Windows Problem Reporting
OriginalFilename: WerMgr
Translation: 0x0409 0x04b0

Razy.531726 also known as:

MicroWorld-eScanGen:Variant.Razy.531726
FireEyeGeneric.mg.7b118f272e5d40b4
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Razy.531726
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Cordis.i!c
K7AntiVirusSpyware ( 005489ea1 )
BitDefenderGen:Variant.Razy.531726
K7GWSpyware ( 005489ea1 )
Cybereasonmalicious.72e5d4
BitDefenderThetaGen:NN.ZemsilF.34106.mq0@a8G@!Sai
CyrenW32/MSIL_Troj.RL.gen!Eldorado
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
GDataGen:Variant.Razy.531726
KasperskyHEUR:Trojan-PSW.MSIL.Cordis.gen
AlibabaTrojanPSW:MSIL/Arcane.b4f91936
NANO-AntivirusTrojan.Win32.Cordis.ggktpr
TencentMsil.Trojan-qqpass.Qqrob.Ahen
Ad-AwareGen:Variant.Razy.531726
SophosMal/Generic-S
ComodoMalware@#3qf81ti2ws5oo
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.Agent.Win32.1190398
Invinceaheuristic
McAfee-GW-EditionGenericRXIA-PF!7B118F272E5D
EmsisoftGen:Variant.Razy.531726 (B)
IkarusTrojan.MSIL.Spy
F-ProtW32/MSIL_Troj.RL.gen!Eldorado
MaxSecureTrojan.Malware.73723072.susgen
AviraTR/Dropper.Gen
Antiy-AVLTrojan[PSW]/MSIL.Cordis
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.D81D0E
ZoneAlarmHEUR:Trojan-PSW.MSIL.Cordis.gen
MicrosoftPWS:MSIL/Arcane.YA!rfn
AhnLab-V3Trojan/Win32.Agent.C2926564
McAfeeGenericRXIA-PF!7B118F272E5D
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesSpyware.PasswordStealer
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Spy.Agent.CEI
RisingSpyware.Agent!8.C6 (CLOUD)
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Cordis.CEI!tr.pws
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.PSW.10c

How to remove Razy.531726?

Razy.531726 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment