Malware

Razy.866116 information

Malware Removal

The Razy.866116 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.866116 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Creates a slightly modified copy of itself

How to determine Razy.866116?


File Info:

crc32: 7D540695
md5: bef8cffe82dff030c52e6ee4f7259fad
name: BEF8CFFE82DFF030C52E6EE4F7259FAD.mlw
sha1: 110eeb65f50126bc75a7e7f6541ad3ae261c7c0a
sha256: 84f143413cf3201383e18ed2b876203e44dfef16b464ccfbf95195c91cd19431
sha512: a7c1646df5bb0ebd9facf1b9e7de03403dd7f7346829dc1a78f372b20f24a160e44a850b87dac5f27f7d0b0ea4f468d8a0b24375f108db723b4185aba629e44d
ssdeep: 6144:T2jVHD/eq6y0onWTgoBzSJ0xhm1hwT117p2gqda+HNpnWTgoBzSJ0xhm1hwT11Y:Tit/eq3hghGwT117p1qda+zghGwT11Y
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Razy.866116 also known as:

K7AntiVirusTrojan ( 00577ea11 )
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.866116
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win32.105468
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Copak.9ffd8923
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.e82dff
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CTNW
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Copak.vho
BitDefenderGen:Variant.Razy.866116
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.866116
TencentWin32.Trojan.Copak.Plkq
Ad-AwareGen:Variant.Razy.866116
SophosML/PE-A + Troj/Agent-BGOS
BitDefenderThetaGen:NN.ZexaF.34170.uuZ@aGo3wXi
TrendMicroTROJ_GEN.R002C0PIG21
McAfee-GW-EditionBehavesLike.Win32.RAHack.fc
FireEyeGeneric.mg.bef8cffe82dff030
EmsisoftGen:Variant.Razy.866116 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.apzh
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.349D284
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Razy.DD3744
ZoneAlarmHEUR:Trojan.Win32.Copak.vho
GDataGen:Variant.Razy.866116
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!BEF8CFFE82DF
MAXmalware (ai score=82)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Agent.Generic
TrendMicro-HouseCallTROJ_GEN.R002C0PIG21
RisingTrojan.Kryptik!1.D284 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Razy.866116?

Razy.866116 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment