Malware

Razy.626443 (B) removal instruction

Malware Removal

The Razy.626443 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.626443 (B) virus can do?

  • Network activity detected but not expressed in API logs

How to determine Razy.626443 (B)?


File Info:

crc32: 2AEF3471
md5: d0360de910098e1598ddb61e56d336f6
name: D0360DE910098E1598DDB61E56D336F6.mlw
sha1: 286010b72f88ec9173f051a7f46d53047eb89563
sha256: b3a0382d7dbd3d5ca5cb1c5f2eb77ff683228f27006002c70e4aa213ec481c80
sha512: 100e7536fb90839ee6e440ad048971aae4f6998b70c8f74ec72c4d116c9222b72d9a2579e711676882cedde091693d6e4135a4a75ba9c4710c832950428d7dce
ssdeep: 3072:wnuRkFgIBSeOGaWOiTf11NlzZMI0HwSonao5/3OHvbT+5YY4d8spM:w
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: ganzubas.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: ganzubas.exe

Razy.626443 (B) also known as:

K7AntiVirusTrojan ( 00565d381 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.626443
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00565d381 )
Cybereasonmalicious.910098
CyrenW32/S-ee2ef6fa!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.ESS
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Witch.gen
BitDefenderGen:Variant.Razy.626443
MicroWorld-eScanGen:Variant.Razy.626443
TencentMsil.Trojan.Witch.Wnlu
Ad-AwareGen:Variant.Razy.626443
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34688.Dm0@aq0SGUj
TrendMicroTROJ_GEN.R005C0PE821
McAfee-GW-EditionBehavesLike.Win32.Generic.gz
FireEyeGeneric.mg.d0360de910098e15
EmsisoftGen:Variant.Razy.626443 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Woreflint.A!cl
ZoneAlarmHEUR:Trojan.MSIL.Witch.gen
GDataGen:Variant.Razy.626443
AhnLab-V3Malware/Win32.RL_Generic.C4228352
McAfeeGenericRXND-FI!D0360DE91009
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R005C0PE821
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.ESS!tr
AVGWin32:RATX-gen [Trj]

How to remove Razy.626443 (B)?

Razy.626443 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment