Malware

Razy.618855 removal guide

Malware Removal

The Razy.618855 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.618855 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Razy.618855?


File Info:

crc32: 42454C89
md5: d842b909b4cbe22c4e4d058a319f2c16
name: D842B909B4CBE22C4E4D058A319F2C16.mlw
sha1: 46a53d7f09466fcfd41484eaa0786656bb042396
sha256: c71e8afe532f5cfb635c2a6659dbb663e69c7214e2dd68f81fe2c54bc9fbd1b2
sha512: 9aef2f7477b9503e72067d26848fc06957fddd2431260183d0c0cbad7d2abab396270e43524cd45e8716d8faad8296843926366c3c05eaff0a2d6b57c2e69105
ssdeep: 768:cmvLc9TnW+SLCVPhW5QqlXytlOTZUMAssLLESAqfSdhs:/kLSWVPMlXyyvZOES1a+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Urjwh Software 1998-2008
BE1fAF: iBeAGy8EPj
InternalName: Urjwh
rLggxY: atFK5VJUGM
es32YF: 5tlnG
FileVersion: 696
CompanyName: CO SOFTWIN BT
ycYysDJVL: 3WkpWSeg
Jr8YxT: SuMKis4s
I6YPd8R: nDcUiW5AoR
ProductName: Urjwh Fyqrdfvt Lvruiaie
TXKN5: wDWbxH
QvpnbKX: dXxEBat5V
ProductVersion: 4.10
FileDescription: Urjwh Fyqrdfvt Lvruiaie
FvkcLwJLC: JTn4L5Pj
mAJFMhAv: ohULG
OriginalFilename: Urjwh.exe
Translation: 0x0409 0x04b0

Razy.618855 also known as:

K7AntiVirusTrojan ( 0055e4091 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.618855
CylanceUnsafe
ZillyaTrojan.PornoAsset.Win32.456
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/LockScreen.1970f9df
K7GWTrojan ( 0055e4091 )
Cybereasonmalicious.9b4cbe
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/LockScreen.AGD
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Razy.618855
NANO-AntivirusTrojan.Win32.Ransom.ecingx
MicroWorld-eScanGen:Variant.Razy.618855
TencentWin32.Trojan.Lockscreen.Wqwg
Ad-AwareGen:Variant.Razy.618855
SophosMal/Generic-S
ComodoMalware@#22m7f8lkod24f
BitDefenderThetaGen:NN.ZexaF.34058.hy0@auM5NKoi
VIPRETrojan.Win32.Zbot.xmp (v)
TrendMicroTROJ_KRYPTK.SMCM
McAfee-GW-EditionBehavesLike.Win32.Dropper.cz
FireEyeGeneric.mg.d842b909b4cbe22c
EmsisoftGen:Variant.Razy.618855 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.yunf
AviraTR/Ransom.bdlp
MicrosoftTrojan:Win32/Dynamer!ac
ArcabitTrojan.Razy.D97167
GDataGen:Variant.Razy.618855
McAfeeArtemis!D842B909B4CB
MAXmalware (ai score=100)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_KRYPTK.SMCM
RisingTrojan.Generic@ML.93 (RDMK:jV+LZw97O5WmNb56WQbKSw)
YandexTrojan.Agent!nYYkayKA+P4
IkarusTrojan.Win32.LockScreen
FortinetW32/Bamital.FA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxQBaGAA

How to remove Razy.618855?

Razy.618855 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment