Malware

Razy.838162 malicious file

Malware Removal

The Razy.838162 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.838162 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.838162?


File Info:

crc32: 6ABBA37A
md5: f90f3fc44c3a6098cb970469e0c00403
name: F90F3FC44C3A6098CB970469E0C00403.mlw
sha1: 1aa6512bb76edc1a83c831e294b9a16ca0e36020
sha256: 66548e8035c099f195d6bbde70538fd4001ac13adc0960ff6ba0fbc091afea94
sha512: 211bfdd612b74f4a394bd609b64c6dda22e4d6c6f93453ef59a669ef1c27cd06281734ad35413220b085502221e2f453f3a887e1e9b9a82164e316becec9e66a
ssdeep: 768:rDTAfbj7t9QTujjjj6jh4SobFjjjjOVG:rD+bjfQFVG
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2016 Samuel Vasko
InternalName: Cmder
FileVersion: 1.3.16.1035
CompanyName: Samuel Vasko
ProductName: Cmder
ProductVersion: 1.3.16.1035
FileDescription: Cmder: Lovely Console Emulator.
OriginalFilename: Cmder.exe
Translation: 0x0000 0x04b0

Razy.838162 also known as:

K7AntiVirusTrojan ( 00578c811 )
LionicTrojan.MSIL.ClipBanker.7!c
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.GenericFC.S18874717
ALYacGen:Variant.Razy.838162
CylanceUnsafe
ZillyaTrojan.ClipBanker.Win32.6940
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00578c811 )
Cybereasonmalicious.44c3a6
CyrenW32/Trojan.YQIS-4538
SymantecTrojan.Gen.2
ESET-NOD32MSIL/ClipBanker.UL
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Banker.MSIL.ClipBanker.gen
BitDefenderGen:Variant.Razy.838162
NANO-AntivirusTrojan.Win32.ClipBanker.iqcnnc
MicroWorld-eScanGen:Variant.Razy.838162
TencentMsil.Trojan-banker.Clipbanker.Ebql
Ad-AwareGen:Variant.Razy.838162
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34796.bm0@aOI4RAb
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R06CC0WB521
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.f90f3fc44c3a6098
EmsisoftGen:Variant.Razy.838162 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Banker.MSIL.drx
WebrootW32.Malware.Gen
AviraTR/Spy.ClipBanker.nelwk
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Ymacco.AA35
GDataGen:Variant.Razy.838162
AhnLab-V3Malware/Gen.RL_Reputation.C4327865
McAfeeArtemis!F90F3FC44C3A
MAXmalware (ai score=84)
MalwarebytesTrojan.ClipBanker
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CC0WB521
RisingSpyware.ClipBanker!1.D05B (CLASSIC)
MaxSecureTrojan.Malware.73489558.susgen
FortinetW32/ClipBanker!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/TrojanSpy.ClipBanker.HgIASOQA

How to remove Razy.838162?

Razy.838162 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment