Malware

About “Razy.601327” infection

Malware Removal

The Razy.601327 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.601327 virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.601327?


File Info:

name: 12AF08F40B2321EF4A4E.mlw
path: /opt/CAPEv2/storage/binaries/0ef84253d738551e667c04d7cde54cd15976c7673b79052a059e1f913065add9
crc32: 2FDD144D
md5: 12af08f40b2321ef4a4e67a47af1b203
sha1: b62c167a93725292dfe29e9b7a101906596c3ffd
sha256: 0ef84253d738551e667c04d7cde54cd15976c7673b79052a059e1f913065add9
sha512: 6cda15789e527dc33e918dbe17638e45026d3c6c7aa592fd9ac6aec38ecb0762187f201e2afe9a926889c08bb7d896d224861829c64a4bb6be9b43febf5f24b5
ssdeep: 3072:+rlOKjDHkB4dy3W4thPxCu0lPtLBll9oout:+pOUdy3N7PQp9l9ooS
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1FFB3E19FC8036B19D739C17B1A8FD9343CAB43BF8FD2671B7692746B6680644B02905B
sha3_384: 9a836d705f5c6002f5fd9c471d8b9e31933a5ec7766f8993dce7bdcbc549c7ca1e20f73bdac9adbc54606ac348e2dd63
ep_bytes: 60be1590fe028dbeeb7f41fd5789e58d
timestamp: 2009-06-17 22:04:37

Version Info:

0: [No Data]

Razy.601327 also known as:

LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanGen:Variant.Razy.601327
FireEyeGen:Variant.Razy.601327
McAfeeArtemis!12AF08F40B23
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforPUP.Win32.Razy.601327
BitDefenderGen:Variant.Razy.601327
Cybereasonmalicious.40b232
ArcabitTrojan.Razy.D92CEF
BitDefenderThetaGen:NN.ZexaF.34062.gmGfaiVBdxl
CyrenW32/new-malware!Maximus
SymantecDownloader
TrendMicro-HouseCallTROJ_FRS.0NA103KO21
KasperskyUDS:DangerousObject.Multi.Generic
NANO-AntivirusTrojan.Win32.ULPM.bjztvt
Ad-AwareGen:Variant.Razy.601327
EmsisoftGen:Trojan.Heur.FU.gmW@aiVBdxl (B)
ComodoMalware@#14zbst8hg37hd
TrendMicroTROJ_FRS.0NA103KO21
McAfee-GW-EditionBehavesLike.Win32.Downloader.cc
IkarusTrojan.Crypt
WebrootW32.Malware.Gen
MAXmalware (ai score=100)
KingsoftWin32.Malware.Heur_Generic.A.(kcloud)
MicrosoftTrojan:Win32/Occamy.C0E
GDataGen:Variant.Razy.601327
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Razy.601327
PandaTrj/CI.A
TencentWin32.Trojan.Crypt.Dxnj
YandexTrojan.GenAsa!cVIeg+mzgns
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Razy.601327?

Razy.601327 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment