Malware

About “Razy.901409” infection

Malware Removal

The Razy.901409 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.901409 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.901409?


File Info:

crc32: 0120F6F4
md5: f935b6c7f24be477a23044fa9a9dc9a5
name: F935B6C7F24BE477A23044FA9A9DC9A5.mlw
sha1: e67fb9bcf9975e0c6c4122ec7b25e61de6d1ba24
sha256: 4827c1bdf5000cc8fc280fa631d36c752d0cdd7b0b357671ef1ebc46a11c440f
sha512: 4b9587402b0f2e99af2aeec67307db55c0323228b8e863506f52b7d8d612aa3fdef4104ded5f5adbff7c546a2e91f558c45080f45b80fbf51ee98baeefc9dd34
ssdeep: 12288:8Bszn2zd6HX+qs+WWhRmmXikb0iTvDcicTB4vs8w:2mnAd6OqszYRmsXb0iTrcVyvs8w
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.901409 also known as:

CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CyrenW32/Kryptik.EUO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLXS
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Androm.gen
BitDefenderGen:Variant.Razy.901409
MicroWorld-eScanGen:Variant.Razy.901409
Ad-AwareGen:Variant.Razy.901409
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34050.QuZ@aWD4!Pbi
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.f935b6c7f24be477
SentinelOneStatic AI – Suspicious PE
MicrosoftProgram:Win32/Wacapew.C!ml
GDataGen:Variant.Razy.901409
McAfeeGenericRXPN-FX!F935B6C7F24B
MAXmalware (ai score=83)
VBA32BScope.Trojan.Vittalia
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HLXS!tr
AVGWin32:PWSX-gen [Trj]
Qihoo-360Win32/Heur.Generic.HwoCueAA

How to remove Razy.901409?

Razy.901409 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment