Malware

What is “Razy.611790 (B)”?

Malware Removal

The Razy.611790 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.611790 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.611790 (B)?


File Info:

crc32: F57146F2
md5: 552a06b0a8c4f53bc03c245839b31abb
name: 552A06B0A8C4F53BC03C245839B31ABB.mlw
sha1: b0962f8c31f37b701cc38dbb5a70853002ddc142
sha256: 96e0c7102f3c15a0f5c8b66b5b1af8a1b59972dd3b3bc6942eb2600ff05bc771
sha512: 4cfd65cd5fc42ac724d1f38c1b8f92849eaa00b732ee6df4fe6bcade21462cbe53c17dc0248e674f3aad763799bef01f7c30917c0cc10874e6f647cb752e7d82
ssdeep: 96:TbV2YqYjHQNZFJ237oVBXFJ+dwnmvKy24N/k2Su5cqSOHoI/HeJkC4ah2jz:TbfRjf3U3E2OsVUccoAMktah2/
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Razy.611790 (B) also known as:

BkavW32.FamVT.CoinsGRL.Trojan
LionicTrojan.Win32.CodecPack.lGnu
Elasticmalicious (high confidence)
DrWebTrojan.SMSSend.1253
CAT-QuickHealTrojan.IgenericRI.S12398789
ALYacGen:Variant.Razy.611790
CylanceUnsafe
ZillyaTrojan.ClipBanker.Win32.4570
SangforTrojan.Win32.Clipper.gen
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanSpy:Win32/ClipBanker.36a09a6d
K7GWTrojan ( 005504611 )
K7AntiVirusTrojan ( 005504611 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/ClipBanker.JB
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.Win32.Clipper.gen
BitDefenderGen:Variant.Razy.611790
NANO-AntivirusTrojan.Win32.Clipper.hlaztr
MicroWorld-eScanGen:Variant.Razy.611790
Ad-AwareGen:Variant.Razy.611790
SophosMal/Generic-S
ComodoMalware@#1lif96nnjvwca
F-SecureTrojan.TR/ClipBanker.tzrhe
BitDefenderThetaGen:NN.ZexaF.34088.amHfa0S9Vkm
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.zh
FireEyeGeneric.mg.552a06b0a8c4f53b
EmsisoftGen:Variant.Razy.611790 (B)
JiangminTrojanSpy.Clipper.l
WebrootW32.Trojan.Clipbanker
AviraTR/ClipBanker.tzrhe
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba!ml
ArcabitTrojan.Razy.D955CE
SUPERAntiSpywareTrojan.Agent/Gen-Banker
ZoneAlarmHEUR:Trojan-Spy.Win32.Clipper.gen
GDataGen:Variant.Razy.611790
AhnLab-V3Trojan/Win32.ClipBanker.C4137993
McAfeeArtemis!552A06B0A8C4
MAXmalware (ai score=80)
VBA32BScope.Trojan.Dynamer
MalwarebytesTrojan.ClipBanker.Generic
PandaTrj/CI.A
RisingSpyware.ClipBanker!1.D05A (CLASSIC)
YandexTrojan.ClipBanker!p8LEgoCY77c
IkarusTrojan.Win32.Clipbanker
MaxSecureTrojan.Malware.74840753.susgen
FortinetW32/ClipBanker.JB!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/TrojanSpy.ClipBanker.HwsBI1oA

How to remove Razy.611790 (B)?

Razy.611790 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment