Malware

About “Razy.595445” infection

Malware Removal

The Razy.595445 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.595445 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Razy.595445?


File Info:

name: 7512A07C93E7E5953C61.mlw
path: /opt/CAPEv2/storage/binaries/e0374219ce9616f9c34b6951559ed215ec66bb567c563c1b533b901f28cda8bd
crc32: 3C7BDB76
md5: 7512a07c93e7e5953c61fc463557a2a8
sha1: bdbad16780ed876ea766819ee62d10ebc64697cd
sha256: e0374219ce9616f9c34b6951559ed215ec66bb567c563c1b533b901f28cda8bd
sha512: fe68d593cae665e6fc9d1a089023d0191804e78b1023b068297127d0217091bb5ea61405df60c0ae6292498956190cb0e09f1f8d9c0a6e570fa5266620f19eaa
ssdeep: 6144:IC3QUFlBXyrgZB7GD7QJze1TSotQhU0Ab7hTR0QZHSOQAdU5JfPGntZ46gTFuuAx:
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ACC4D619421EE620CBF5D5BA6C572AA3B324C80B5036CD58DE238B13E55FEB52C89CD7
sha3_384: 406a0c7ec5a4ebd09818141af6be6c38a11e63fecc0285ff435731eee9f80f6c978d827758558bbc37d8ac8da8aae0b0
ep_bytes: ff250020400000000000000000000000
timestamp: 2018-05-30 23:44:17

Version Info:

Translation: 0x0000 0x04b0
FileDescription: WindowsApplication1
FileVersion: 1.0.0.0
InternalName: WindowsApplication1.exe
LegalCopyright: Copyright © 2018
OriginalFilename: WindowsApplication1.exe
ProductName: WindowsApplication1
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Razy.595445 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Razy.595445
FireEyeGeneric.mg.7512a07c93e7e595
ALYacGen:Variant.Razy.595445
CylanceUnsafe
VIPREGen:Variant.Razy.595445
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004db6591 )
K7GWTrojan ( 004db6591 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/S-8931d031!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Injector.TTT
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderGen:Variant.Razy.595445
NANO-AntivirusTrojan.Win32.Kryptik.fdlmhw
AvastWin32:Trojan-gen
RisingTrojan.Generic/MSIL@AI.98 (RDM.MSIL:Ktd/X+NHzWxdZYT6XOgmxg)
Ad-AwareGen:Variant.Razy.595445
TACHYONTrojan/W32.DN-Bladabindi.553472.B
EmsisoftGen:Variant.Razy.595445 (B)
ComodoMalware@#15q8mn3v9kqd
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.595445
AviraTR/Dropper.MSIL.Gen
MicrosoftBackdoor:MSIL/Bladabindi!rfn
GoogleDetected
AhnLab-V3Win-Trojan/MSILKrypt09.Exp
Acronissuspicious
McAfeeArtemis!7512A07C93E7
MAXmalware (ai score=88)
MalwarebytesMachineLearning/Anomalous.100%
TencentMsil.Trojan.Agent.Msmw
YandexTrojan.Agent!xfBdMfeViSM
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.SHW!tr
BitDefenderThetaGen:NN.ZemsilF.34698.Hm0@aOnyhdn
AVGWin32:Trojan-gen
Cybereasonmalicious.c93e7e
PandaTrj/GdSda.A

How to remove Razy.595445?

Razy.595445 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment