Malware

Razy.861535 malicious file

Malware Removal

The Razy.861535 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.861535 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.861535?


File Info:

name: 6D2172A8E22F8E3BE375.mlw
path: /opt/CAPEv2/storage/binaries/f746c8f239ee2d17837e063e8b2f2f81118e18bea15be9b5f15e2a3ec2b65c48
crc32: 9CA06D83
md5: 6d2172a8e22f8e3be375e1a1f764b495
sha1: ac8de7d3464deee746d8c4ed03a361be8c0db2b4
sha256: f746c8f239ee2d17837e063e8b2f2f81118e18bea15be9b5f15e2a3ec2b65c48
sha512: 5b17d11a906a1d6b30f5fbf944461a0c7cd9f0a25f5737d3e31c13d7ccd11d534c317d1cce91a924c3e9eb680fbabdb4e7adf85c60d5c1d2ea93d225e1cc5e14
ssdeep: 12288:z/hMX9/hPFHKm77L7Uskqy+5+JL0dLo1d1W8T:z/hG9/hPFqifUski5+t0pOdRT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D3D4BE017A5040B5D87321B229BDAB36EA38BA610F228AC7A7C85D9D5F707D077353DB
sha3_384: 27bf42b9286032f6af2483349f35e38a4c7852479858ff29f024c19f39499811a597f78df12173a410574c1d7a88f577
ep_bytes: a7b5708acc72c99b5865306cbffaab33
timestamp: 2016-06-04 12:55:48

Version Info:

0: [No Data]

Razy.861535 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Razy.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.861535
FireEyeGeneric.mg.6d2172a8e22f8e3b
CAT-QuickHealTrojan.Sabsik
ALYacGen:Variant.Razy.861535
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaVirus:Win32/Ipamor.2e1fc610
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/Blackie.AO2.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R03BH0CLO21
ClamAVWin.Worm.Kolab-9917019-0
BitDefenderGen:Variant.Razy.861535
AvastWin32:VB-FBX
Ad-AwareGen:Variant.Razy.861535
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
SentinelOneStatic AI – Malicious PE
EmsisoftGen:Variant.Razy.861535 (B)
IkarusVirus.Win32.VB
GDataGen:Variant.Razy.861535
Antiy-AVLTrojan/Generic.ASMalwS.31AA51A
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Razy.DD255F
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeRDN/Generic.hra
VBA32Trojan.Sdum
MalwarebytesMalware.AI.3696146603
APEXMalicious
MAXmalware (ai score=83)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenericKD.3755!tr
AVGWin32:VB-FBX

How to remove Razy.861535?

Razy.861535 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment