Malware

About “Razy.826969” infection

Malware Removal

The Razy.826969 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.826969 virus can do?

  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Creates a copy of itself

Related domains:

stiloveu.obavestime.com
creenuimrddn37nod93.com

How to determine Razy.826969?


File Info:

crc32: 0B9306FE
md5: 6d51feec63cca723c10a7e8c6ee5416d
name: 6D51FEEC63CCA723C10A7E8C6EE5416D.mlw
sha1: 8c73860977204fbb0435ae1cf67f696872057827
sha256: 3fcea6eed580896c4eb35a152dd3dcdc5425798e994f229ae37ce2781d90f3e7
sha512: fb33d70d2839732e70e5ad029e24c33c305417aab480e5cf704b1cf1aa25f286a1da72974eb33cdb2b29236145ad0c87ad77e759115befab28488f0feab9242a
ssdeep: 768:CEa1h1Q/t8hOC3h1c5Q4Vhi+GkcAjyWTbk6tQ8BCeeThZxPaFFLItdHG0R4dCm:uf1rOCRy5Quhi/l2yqPLBCech28HkC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
PrivateBuild:
InternalName: gdsgdgd.exe
FileVersion: 8.25.14.26
CompanyName: dgfdf
SpecialBuild:
LegalTrademarks:
Comments: gdfgfd
ProductName: dgdgdgds
ProductVersion: 8.25.14.58
FileDescription: dfgfgf
OriginalFilename: SBOX.exe
Translation: 0x0000 0x04b0

Razy.826969 also known as:

K7AntiVirusTrojan ( 003a29a31 )
LionicWorm.Win32.Generic.o!c
DrWebTrojan.Winlock.6387
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.826969
CylanceUnsafe
ZillyaTrojan.Weelsof.Win32.25
SangforSuspicious.Win32.Save.a
AlibabaRansom:Win32/Weelsof.7ef21ec0
K7GWTrojan ( 003a29a31 )
Cybereasonmalicious.c63cca
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Weelsof.B
APEXMalicious
AvastWin32:Weelsof-F [Trj]
ClamAVWin.Trojan.Weelsof-26
KasperskyUDS:Worm.Win32.Generic
BitDefenderGen:Variant.Razy.826969
NANO-AntivirusTrojan.Win32.Winlock.eszkuf
MicroWorld-eScanGen:Variant.Razy.826969
TencentWin32.Worm.Generic.Wqmz
Ad-AwareGen:Variant.Razy.826969
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34170.du0@aSMfxnpi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.qh
FireEyeGen:Variant.Razy.826969
EmsisoftGen:Variant.Razy.826969 (B)
JiangminWorm/Generic.zgj
AviraTR/Downloader.Gen
eGambitUnsafe.AI_Score_69%
Antiy-AVLTrojan/Generic.ASMalwS.47861C
MicrosoftRansom:Win32/Weelsof.C
ZoneAlarmHEUR:Worm.Win32.Generic
GDataGen:Variant.Razy.826969
McAfeeArtemis!6D51FEEC63CC
MAXmalware (ai score=100)
VBA32BScope.Trojan.Weelsof
PandaGeneric Malware
YandexTrojan.GenAsa!OBhchtxrSLU
IkarusTrojan.Win32.Weelsof
FortinetW32/Weelsof.B!tr
AVGWin32:Weelsof-F [Trj]
Paloaltogeneric.ml

How to remove Razy.826969?

Razy.826969 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment