Malware

Should I remove “Razy.876483”?

Malware Removal

The Razy.876483 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.876483 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Razy.876483?


File Info:

name: A51F3DFE81BDFC4D4FF3.mlw
path: /opt/CAPEv2/storage/binaries/7ef50241d161085b904e0fe06ec4f07dbec6fc2a820687e4a530a9346703fc51
crc32: 49A9E4F4
md5: a51f3dfe81bdfc4d4ff34be58e39d0fe
sha1: 716b49f0d5d587f99e8a5033562f83170223fae4
sha256: 7ef50241d161085b904e0fe06ec4f07dbec6fc2a820687e4a530a9346703fc51
sha512: 27f4fd121cdd6530fa5e736199a941aed65c96e8aa64bf89255a51c804ea967a4a7edfb1db733bd5c8403245902d4d19db8fef10b9d305697b0a77612b2209ba
ssdeep: 192:2nmUvmg3lzzv9zLpIKEfopueedHdFBuLpMrzYk8J4pfVBcF7gz5mb:yn7R9zaKNpueet0sYDJ4JVB0o4b
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T104B2180369A953C9E57680F063A32F05F8747EA1573E528F797816760F62F80BB2B358
sha3_384: 039b9d6ae78618e72864e0eec81b29050e96fc0976248353bc73068c2e00f344540480573c55404827c867800d1ac1f7
ep_bytes: 4881ec680a0000e8b40f000048898424
timestamp: 1970-01-01 15:50:05

Version Info:

CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 8.0.51.16
Full Version: 1.8.0_51-b16
InternalName: orbd
LegalCopyright: Copyright © 2015
OriginalFilename: orbd.exe
ProductName: Java(TM) Platform SE 8
ProductVersion: 8.0.51.16
Translation: 0x0000 0x04b0

Razy.876483 also known as:

LionicTrojan.Win64.Patched.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.876483
FireEyeGeneric.mg.a51f3dfe81bdfc4d
McAfeeArtemis!A51F3DFE81BD
CylanceUnsafe
K7AntiVirusTrojan ( 0056398b1 )
AlibabaTrojanDownloader:Win64/Infector.d08b7406
K7GWTrojan ( 0056398b1 )
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW64/Scar.AL.gen!Eldorado
SymantecTrojan.Gen.6
ESET-NOD32a variant of Win64/TrojanDownloader.Agent.EB
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Ulise-9870412-0
KasperskyTrojan.Win64.Patched.q
BitDefenderGen:Variant.Razy.876483
AvastFileRepMalware
TencentWin64.Trojan.Patched.Ljtv
Ad-AwareGen:Variant.Razy.876483
SophosMal/Generic-S
ComodoMalware@#oun88xj2uiv6
DrWebWin32.HLLW.Phorpiex.1387
TrendMicroTrojan.Win64.SMALL.SMTX
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Razy.876483 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Mansabo.ayj
AviraW32/Infector.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASMalwS.3009AA7
GridinsoftRansom.Win64.Gen.sa
MicrosoftTrojanDownloader:Win32/SmallAgent!atmn
GDataGen:Variant.Razy.876483
CynetMalicious (score: 99)
AhnLab-V3Downloader/Win.Patched.X2092
ALYacGen:Variant.Razy.876483
TACHYONWorm/W32.ZeroDownloader
MalwarebytesTrojan.Downloader.RZ.Generic
TrendMicro-HouseCallTrojan.Win64.SMALL.SMTX
IkarusWin32.Infector
FortinetW64/CoinMiner.HI!tr
AVGFileRepMalware
Cybereasonmalicious.e81bdf

How to remove Razy.876483?

Razy.876483 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment