Malware

Razy.836326 (B) (file analysis)

Malware Removal

The Razy.836326 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.836326 (B) virus can do?

  • Network activity detected but not expressed in API logs

How to determine Razy.836326 (B)?


File Info:

crc32: 880F981C
md5: 2c4c9847d73dfe828d3a7e1cc7e5645d
name: 2C4C9847D73DFE828D3A7E1CC7E5645D.mlw
sha1: 8d3967c7f7ee4a28f2a39b7707408023c640bc6c
sha256: ab409d9f4cc2cef7a935d5f709e639ee42832e6b52ab8760fda93330f47dd011
sha512: 8c617b685f7c419393e68f5bd4d05c8edcafe58226fe622629098c07f39bf09803540650d95c803c621c74c6ea01f1a858da2deefc2cb5dfb5d4faaa903c0c96
ssdeep: 384:wshCOop37CSgy6AK4HBqbO0yc+0cvhgp20kUGuYejA4A:wYQIY6AK4h6pyc+Aw0kUGBeEF
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Lemons.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Lemons.exe

Razy.836326 (B) also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader36.38822
MicroWorld-eScanGen:Variant.Razy.836326
FireEyeGeneric.mg.2c4c9847d73dfe82
ALYacGen:Variant.Razy.836326
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Razy.836326
K7GWTrojan-Downloader ( 00576f1f1 )
K7AntiVirusTrojan-Downloader ( 00576f1f1 )
BitDefenderThetaGen:NN.ZemsilF.34804.cm0@aepVYdo
CyrenW32/MSIL_Troj.ADH.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
AlibabaTrojanSpy:MSIL/Stealer.43ea8f42
Ad-AwareGen:Variant.Razy.836326
SophosMal/Generic-S
F-SecureTrojan.TR/Dldr.Small.xacmv
McAfee-GW-EditionBehavesLike.Win32.Trojan.nm
EmsisoftGen:Variant.Razy.836326 (B)
IkarusTrojan-Downloader.MSIL.Small
WebrootW32.Rogue.Gen
AviraTR/Dldr.Small.xacmv
MAXmalware (ai score=80)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AAAB
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Razy.DCC2E6
ZoneAlarmHEUR:Trojan-Spy.MSIL.Stealer.gen
GDataGen:Variant.Razy.836326
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4317328
McAfeeRDN/Generic Downloader.x
MalwarebytesTrojan.Downloader.MSIL.Generic
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Small.CJI
TrendMicro-HouseCallTROJ_GEN.R002H0CB121
RisingDownloader.Small!8.B41 (CLOUD)
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Small.CJI!tr.dldr
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.7f7ee4
Paloaltogeneric.ml
Qihoo-360Win32/TrojanDownloader.Small.HgIASOQA

How to remove Razy.836326 (B)?

Razy.836326 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment