Malware

About “Razy.847121” infection

Malware Removal

The Razy.847121 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.847121 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Razy.847121?


File Info:

crc32: 05DFE8AF
md5: 794a9ef833c003ac37f8f718800a4734
name: 794A9EF833C003AC37F8F718800A4734.mlw
sha1: b9971a74bc35ce32a1e1f8e0db3e219a970306b1
sha256: b4e4b3d07d7ffed9e7f3d47195b9ce3a51358055179bd8498f2ee96d71905085
sha512: af1d44598c1ba64afe842bf770ca3f20c4fb49fec0c60c43496b3d83692bb04ee7e13b73237e89c583f77c875867077a265660eafb7d248c88fe03d07fe51c22
ssdeep: 384:EeNalHHHmV5p+K3l7GxO7CqaSxDIc/TzlOMJi+v8qGZz4o4JhbqG:EK0HHHyKK3sbq6c/T6hhJ4o4JhbqG
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright 2022 xa9 XeLVwsUS. All rights reserved.
Assembly Version: 5.7.7.4
InternalName: BHVcBryr.exe
FileVersion: 4.6.2.4
CompanyName: UJuCkfUi
LegalTrademarks: WrWGvdcS
Comments: ReaHiEJL
ProductName: BHVcBryr
ProductVersion: 5.7.7.4
FileDescription: ScOYUQXT
OriginalFilename: BHVcBryr.exe
Translation: 0x0409 0x0514

Razy.847121 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.847121
FireEyeGeneric.mg.794a9ef833c003ac
McAfeeRDN/Generic Downloader.x
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan-Downloader ( 0057834b1 )
BitDefenderGen:Variant.Razy.847121
CyrenW32/MSIL_Kryptik.DGB.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Downloader.MSIL.BaseLoader.gen
AlibabaTrojan:MSIL/Kryptik.44eee2f2
RisingDownloader.Agent!1.D296 (CLASSIC)
Ad-AwareGen:Variant.Razy.847121
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.gveor@0
DrWebTrojan.DownLoader36.43043
TrendMicroTrojan.MSIL.MALREP.THBBCBA
McAfee-GW-EditionRDN/Generic Downloader.x
EmsisoftGen:Variant.Razy.847121 (B)
IkarusTrojan-Downloader.MSIL.Agent
AviraTR/Dldr.Agent.mxtiz
MAXmalware (ai score=85)
KingsoftWin32.Heur.KVM019.a.(kcloud)
MicrosoftTrojan:MSIL/AgentTesla.AM!MTB
ArcabitTrojan.Razy.DCED11
ZoneAlarmHEUR:Trojan-Downloader.MSIL.BaseLoader.gen
GDataGen:Variant.Razy.847121
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Kryptik.R367655
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.34590.bm1@a0fNtBei
MalwarebytesTrojan.Crypt
PandaTrj/CI.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HKY
TrendMicro-HouseCallTrojan.MSIL.MALREP.THBBCBA
FortinetMSIL/Agent.HKY!tr.dldr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.Generic.HgIASPkA

How to remove Razy.847121?

Razy.847121 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment