Malware

About “Razy.542694” infection

Malware Removal

The Razy.542694 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.542694 virus can do?

  • Unconventionial language used in binary resources: Polish
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.542694?


File Info:

crc32: C766B0D4
md5: 6f37e8565e16f0bc93c1b436b9bfb718
name: 6F37E8565E16F0BC93C1B436B9BFB718.mlw
sha1: cf8aed9c7ddf4ac6f76b5be657d453b4562bedd2
sha256: c7848238318a701349733a4169cf866e0049f38d845ca3d94d4c41a24f67bcb0
sha512: 8324d567abe628a8fdda5c57e2833df7fa0e5a25fe1022bbd4b90f29d36be7d121e574d6207b890d8affb6f5e5b76d02925b47abfcf7a7af2e826473946de10b
ssdeep: 6144:jcZjIncg8iGZzlOvbskwT4zabhIjZQW5+lOzt/v8B7dMJnxm7YwKmfz+G+nlcmN:j94kz0QR5+Ytvbxm8wanlctjefX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.542694 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 7000000f1 )
LionicTrojan.Win32.PinkBlocker.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.4007
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.542694
CylanceUnsafe
ZillyaTrojan.PinkBlocker.Win32.1261
SangforTrojan.Win32.Kryptik.FPHB
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/Logger.3840d181
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.65e16f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FPHB
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Tibia-553
KasperskyTrojan-Ransom.Win32.PinkBlocker.dap
BitDefenderGen:Variant.Razy.542694
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.542694
TencentWin32.Trojan.Pinkblocker.Wqnf
Ad-AwareGen:Variant.Razy.542694
SophosMal/Generic-S
ComodoMalware@#1o18nuvkss7z9
BitDefenderThetaAI:Packer.A8B84AE11F
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
FireEyeGeneric.mg.6f37e8565e16f0bc
EmsisoftGen:Variant.Razy.542694 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1136978
eGambitUnsafe.AI_Score_65%
Antiy-AVLTrojan/Generic.ASMalwS.904120
MicrosoftTrojan:Win32/Fareit!ml
GDataGen:Variant.Razy.542694
TACHYONTrojan/W32.PinkBlocker.488990
Acronissuspicious
McAfeeArtemis!6F37E8565E16
MAXmalware (ai score=100)
RisingTrojan.Generic@ML.93 (RDML:lKW7RPpaPmoDUUV2SA8Tjg)
IkarusBehavesLike
MaxSecureTrojan.Malware.2364377.susgen
FortinetW32/Malware_fam.NB
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxMBEpsA

How to remove Razy.542694?

Razy.542694 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment