Malware

Razy.863982 (B) removal guide

Malware Removal

The Razy.863982 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.863982 (B) virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.863982 (B)?


File Info:

name: 778D22A4A396195FD288.mlw
path: /opt/CAPEv2/storage/binaries/c8c7a6c9fa7b907a5678580c7259f483f37a5905445de8ae0589f799bda3bf14
crc32: 0DFF450B
md5: 778d22a4a396195fd288f3f53053c8f2
sha1: 0a3a591533dd4508dfc8ece8fa4501a991abdf46
sha256: c8c7a6c9fa7b907a5678580c7259f483f37a5905445de8ae0589f799bda3bf14
sha512: 495dc9e0c9c5acf0d5a291d4d6fd6c027cc65b1422fd4b2e64ff5890cba0a517259a70ad64b00d5ca6144218c3f0a1b105ef7d653cd02877758d53d3e4fb6edd
ssdeep: 6144:SZTvI3YVJYZA/vJ7IvEsj1zsTZPJwAJWlaC+EUgcEDWZ1LIvhHn+2uGHp:ITXJFdIZUPJDh3EUgcMHngGJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11125C6403F459564E6752B30ED52CBE8DB32FAE619514F1B37D833AD0C722A21E2BB46
sha3_384: 204e7a307006308e1d2229c44bdacbca2d9a72dc54d815ade030607f63f5d192c63ab276694ce6216ab0295859b04e6b
ep_bytes: 4d5a0000000000000000000000000000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Razy.863982 (B) also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.863982
FireEyeGeneric.mg.778d22a4a396195f
ALYacGen:Variant.Razy.863982
VIPREGen:Variant.Razy.863982
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 004f5da31 )
K7AntiVirusTrojan ( 004f5da31 )
BitDefenderThetaGen:NN.ZexaF.34592.afX@aq1lvvg
CyrenW32/S-62d42a06!Eldorado
tehtrisGeneric.Malware
BitDefenderGen:Variant.Razy.863982
NANO-AntivirusTrojan.Win32.Malformed.evafmt
Ad-AwareGen:Variant.Razy.863982
EmsisoftGen:Variant.Razy.863982 (B)
ComodoApplication.Win32.PEMalform.I@7ovabp
BaiduWin32.Trojan.Agent.avz
McAfee-GW-EditionBehavesLike.Win32.Sodinokibi.tz
SentinelOneStatic AI – Malicious PE
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
IkarusTrojan.SuspectCRC
GoogleDetected
AviraTR/Trash.Gen
ArcabitTrojan.Razy.DD2EEE
ViRobotTrojan.Win32.CorruptPE.Gen.A
GDataWin32.Trojan.Enistery.A
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!778D22A4A396
MalwarebytesTrojan.BitCoinMiner
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:PPOdcKtIqWKPYTJAh7AHpA)
MAXmalware (ai score=83)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kovter.EB0!tr

How to remove Razy.863982 (B)?

Razy.863982 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment