Malware

Should I remove “Razy.653768 (B)”?

Malware Removal

The Razy.653768 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.653768 (B) virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Razy.653768 (B)?


File Info:

crc32: 92A4E073
md5: ce12340500c7e4a6619b04e962ac8979
name: CE12340500C7E4A6619B04E962AC8979.mlw
sha1: 491b53eb81652997b6fdfa47616746e1d9370829
sha256: 6c0d4fc7045da23e36d2b11719c0e679e60257814d578f92a4a41163df5ccdc7
sha512: a6d9f265f13d6200768f9c8d062c708498eaa3f606fda4c066ad5d6e5874896f8e0d97729ddafa357e69514ca6709822193851db3f716ce7062e412133e12fa3
ssdeep: 3072:hlOCDs50A8JX3lwgN8DPjbVZq6vT0nTnoS5KAttpzrIvPC:hLDsgp3Su8DMnX5nt7zSq
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: (C) Techsoft
InternalName: setup
FileVersion: 1,0,0,0
CompanyName: Techsoft
LegalTrademarks: (C) Techsoft
ProductName: Installer
ProductVersion: 1,0,0,0
FileDescription: Installer
OriginalFilename: setup.exe
Translation: 0x0409 0x04e4

Razy.653768 (B) also known as:

K7AntiVirusTrojan ( 0055e3ef1 )
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.Encoder.4160
CynetMalicious (score: 99)
CAT-QuickHealRansomware.Sarento.A8
ALYacGen:Variant.Razy.653768
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.2119
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.500c7e
SymantecRansom.EncRaaS!g1
ESET-NOD32a variant of Win32/Filecoder.EZ
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.653768
NANO-AntivirusTrojan.Win32.Encoder.eaymml
MicroWorld-eScanGen:Variant.Razy.653768
TencentMalware.Win32.Gencirc.114c0773
Ad-AwareGen:Variant.Razy.653768
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34170.kG0@aio0L0ei
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CRYPRAAS.SMA1
McAfee-GW-EditionGenericR-GMU!CE12340500C7
FireEyeGeneric.mg.ce12340500c7e4a6
EmsisoftGen:Variant.Razy.653768 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Genkd
AviraHEUR/AGEN.1131979
eGambitUnsafe.AI_Score_67%
Antiy-AVLTrojan/Generic.ASMalwS.17A2169
MicrosoftRansom:Win32/Sarento
GDataGen:Variant.Razy.653768
AhnLab-V3Trojan/Win32.Ransom.R199891
Acronissuspicious
McAfeeGenericR-GMU!CE12340500C7
MAXmalware (ai score=89)
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CRYPRAAS.SMA1
RisingTrojan.Generic@ML.81 (RDML:iNnAoJMRTGA0uuZzXH+lEQ)
IkarusTrojan.Win32.Filecoder
FortinetW32/Filecoder.EZ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Razy.653768 (B)?

Razy.653768 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment