Malware

Razy.696105 information

Malware Removal

The Razy.696105 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.696105 virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Arabic
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Razy.696105?


File Info:

crc32: C56477CA
md5: a2b914550a41e6cb0bf86ed5bb57c944
name: A2B914550A41E6CB0BF86ED5BB57C944.mlw
sha1: 25a4e4028be16ddfda3dd8c3bbb4dab3d60b955e
sha256: fe37a9d86c419c2e880a421dd2eb831852cb2bbd93339a0ea2095be08e405dbb
sha512: b8ee6bc57320163a12eb9c514d64ceee49f29197ecb25214fd2dff6a29568ead9c1e4f7b0062b68c38e46defd009599a5cd6a2dc3949efb3288549bf50f825ea
ssdeep: 3072:U5yp79Gsl9Gosj30OwebgeQWddGP2pFjX/KIpqzDlH7Td+hntq:nl9GX3KWd7pY7TYt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Google Chrome
InternalName: scoro
FileVersion: 2.03.0001
CompanyName: Google Chrome
LegalTrademarks: Google Chrome
Comments: Google Chrome
ProductName: Google Chrome
ProductVersion: 2.03.0001
FileDescription: Google Chrome
OriginalFilename: scoro.exe

Razy.696105 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader12.53817
MicroWorld-eScanGen:Variant.Razy.696105
CAT-QuickHealTrojanRansom.Blocker
McAfeeGenericRXAA-AA!A2B914550A41
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Blocker.j!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0000000c1 )
BitDefenderGen:Variant.Razy.696105
K7GWTrojan ( 0000000c1 )
Cybereasonmalicious.50a41e
BitDefenderThetaGen:NN.ZevbaCO.34590.pm0@ammcg8pO
CyrenW32/Trojan.MNJC-1347
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTrojanSpy.Win32.BLOCKER.USMANAB21
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.goxb
AlibabaRansom:Win32/Blocker.2c37e3e9
NANO-AntivirusTrojan.Win32.Blocker.hxnkwh
RisingRansom.Blocker!8.12A (CLOUD)
Ad-AwareGen:Variant.Razy.696105
SophosMal/Generic-S
ComodoMalware@#1imc6q9u0eth5
F-SecureTrojan.TR/VB.Agent.bkskm
ZillyaTrojan.Blocker.Win32.26743
TrendMicroTrojanSpy.Win32.BLOCKER.USMANAB21
McAfee-GW-EditionBehavesLike.Win32.Trojan.dh
SentinelOneStatic AI – Malicious PE
FireEyeGeneric.mg.a2b914550a41e6cb
EmsisoftGen:Variant.Razy.696105 (B)
IkarusTrojan.Win32.VB
JiangminTrojan/Blocker.ngh
AviraTR/VB.Agent.bkskm
Antiy-AVLTrojan[Ransom]/Win32.Blocker
MicrosoftProgram:Win32/Ymacco.AAFE
ArcabitTrojan.Razy.DA9F29
ZoneAlarmTrojan-Ransom.Win32.Blocker.goxb
GDataGen:Variant.Razy.696105
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Gen
VBA32TScope.Trojan.VB
ALYacGen:Variant.Razy.696105
MAXmalware (ai score=80)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Genetic.gen
APEXMalicious
ESET-NOD32a variant of Win32/VB.RUJ
YandexTrojan.Blocker!xDqujPv3udE
eGambitUnsafe.AI_Score_99%
FortinetW32/Blocker.GOXB!tr
WebrootW32.Backdoor.Gen
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Ransom.6f2

How to remove Razy.696105?

Razy.696105 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment