Malware

Razy.682550 (B) removal guide

Malware Removal

The Razy.682550 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.682550 (B) virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Razy.682550 (B)?


File Info:

crc32: 41524FFD
md5: 9bfc76dcaabb8ffc6ba958beaa49dc9d
name: sendhookfile.exe
sha1: 3e711cb7f20aa19fb11eaad79aa1733ec07fab2d
sha256: 72940daba1534144997e8bc47ab645312a2d1b4d50dacfb8b76a28e3458697cc
sha512: ed4f7d6a42ae383a189c4188df39523d671d99f4f2d345e5f69e969a0218306504c36db0a1ad195fc8c081b10e9f8246680ebbaa569fe0fa39261e626db526cb
ssdeep: 96:Ey9KZRv1AGuWHB/Ojjruu5/WuD1AzW743orBKDmnuKppMHgJoRCx1zNt:6RveGmdrDKzWE3orMg8CxP
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.0.0
InternalName: sendhookfile.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: StealerBin
ProductVersion: 1.0.0.0
FileDescription: StealerBin
OriginalFilename: sendhookfile.exe

Razy.682550 (B) also known as:

MicroWorld-eScanGen:Variant.Razy.682550
FireEyeGen:Variant.Razy.682550
McAfeeArtemis!9BFC76DCAABB
CylanceUnsafe
BitDefenderGen:Variant.Razy.682550
K7GWPassword-Stealer ( 0056a7ae1 )
Cybereasonmalicious.7f20aa
BitDefenderThetaGen:NN.ZemsilF.34136.am0@aC9y4b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.Discord.HZ
TrendMicro-HouseCallTROJ_GEN.R002H0CGH20
AvastWin32:MalwareX-gen [Trj]
AlibabaTrojan:MSIL/Discord.5096d586
AegisLabTrojan.Win32.Razy.4!c
Ad-AwareGen:Variant.Razy.682550
EmsisoftGen:Variant.Razy.682550 (B)
F-SecureTrojan.TR/PSW.Discord.gvzfc
DrWebTrojan.PWS.StealerNET.70
SophosMal/Generic-S
APEXMalicious
AviraTR/PSW.Discord.gvzfc
FortinetMSIL/Discord.HZ!tr.pws
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.DA6A36
AhnLab-V3Trojan/Win32.Wacatac.R345109
MicrosoftTrojan:Win32/Wacatac.D7!ml
ALYacGen:Variant.Razy.682550
MAXmalware (ai score=100)
MalwarebytesSpyware.DiscordStealer
PandaTrj/GdSda.A
RisingStealer.Discord!8.10A86 (CLOUD)
GDataGen:Variant.Razy.682550
AVGWin32:MalwareX-gen [Trj]
Qihoo-360Generic/Trojan.PSW.f14

How to remove Razy.682550 (B)?

Razy.682550 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment