Malware

Razy.609143 (B) malicious file

Malware Removal

The Razy.609143 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.609143 (B) virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory

Related domains:

z.whorecord.xyz
ciarevengiux.awsmppl.com
a.tomx.xyz

How to determine Razy.609143 (B)?


File Info:

crc32: 4B274FD8
md5: 195ad78008920eb74c107869dbbe5cc1
name: 195AD78008920EB74C107869DBBE5CC1.mlw
sha1: 568f761f06a730cbd889da9f465e2e1651b4ed18
sha256: a764638549184eb4a5f01806cf0f22cde3ae0f7bc739052b36a996b394bb65c5
sha512: c02b571a46b9bcf86b72e792a1e6762628d183d9ed052dcbb41e226ddc9fa3294a6eea0c9f58e325864778dd08c09151e53aa97ba675693af046cbdcc8d50091
ssdeep: 768:o8cbdULRpIHFCy3IPnj7YHdqSBI2qGQ+IBOx4keONsoNNuV04ZeDz2T:kUNUCyYfj7IAFV+IBOx4keQJNq/ED
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Razy.609143 (B) also known as:

K7AntiVirusTrojan ( 005121fb1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.RevetRat.2
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Generic
ALYacGen:Variant.Razy.609143
CylanceUnsafe
SangforPUP.Win32.Razy.609143
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Revet.167fea88
K7GWTrojan ( 005121fb1 )
Cybereasonmalicious.008920
CyrenW32/Trojan.BZI.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.AZM
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Dropper.LimeRAT-9776087-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.609143
NANO-AntivirusTrojan.Win32.Cerbu.fnswib
MicroWorld-eScanGen:Variant.Razy.609143
TencentWin32.Trojan.Generic.Dygw
Ad-AwareGen:Variant.Razy.609143
SophosMal/Generic-R + Mal/Revet-A
ComodoMalware@#3qyc4l7hsmjdr
BitDefenderThetaGen:NN.ZemsilF.34266.dmW@aez!uqf
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0OJQ21
McAfee-GW-EditionBehavesLike.Win32.Generic.qm
FireEyeGeneric.mg.195ad78008920eb7
EmsisoftGen:Variant.Razy.609143 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.XPACK.Gen
eGambitTrojan.Generic
Antiy-AVLTrojan/Generic.ASMalwS.2AC484B
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Razy.609143
AhnLab-V3Trojan/Win32.RL_Generic.C3451460
Acronissuspicious
McAfeeArtemis!195AD7800892
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.RevengeRAT
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0OJQ21
RisingTrojan.Generic@ML.100 (RDML:wppv13MD46jxbGcq9AFdJA)
YandexTrojan.Agent!A9upnxcqVzc
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.7164915.susgen
FortinetMSIL/Agent.AZM!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove Razy.609143 (B)?

Razy.609143 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment