Malware

Razy.926734 (B) malicious file

Malware Removal

The Razy.926734 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.926734 (B) virus can do?

  • Creates RWX memory
  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.926734 (B)?


File Info:

crc32: DA9F2130
md5: 5386b04035633f75622920e5e8b8bf25
name: 5386B04035633F75622920E5E8B8BF25.mlw
sha1: 4c12a00fc3d5af49f555668643308e15bd583563
sha256: fd4d8a70a36460fb62abfbb47681b531b2b085456583e84918c2c3ab8603c6a7
sha512: 7bcdcb13692c910575537abaa152495e9f10210176f2d57dbcd003b73d810ae4676325a1bd6ea56f063e31df0a84fcfad5d6bc6ce7596ce5b7eafda0e9843c65
ssdeep: 98304:+A9oWc1/CBfzprmBmBxyjDaff0wcKMIzbCtGgwmb:+A+/QqYxyjD1fKMIzbCtse
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.926734 (B) also known as:

ClamAVWin.Trojan.Razy-9892663-0
ALYacGen:Variant.Razy.926734
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CyrenW32/VMProtect.F.gen!Eldorado
ESET-NOD32a variant of Win32/Packed.VMProtect.YD
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
BitDefenderGen:Variant.Razy.926734
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.926734
Ad-AwareGen:Variant.Razy.926734
SophosML/PE-A
BitDefenderThetaAI:Packer.35BCABEB21
FireEyeGeneric.mg.639ba1c87f681489
EmsisoftGen:Variant.Razy.926734 (B)
SentinelOneStatic AI – Malicious PE
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftMalware.Win32.Gen.bot!se33161
GDataWin32.Trojan-Stealer.Clipper.2YGVGC
AhnLab-V3Trojan/Win.Generic.R441258
Acronissuspicious
MAXmalware (ai score=89)
MalwarebytesTrojan.Tasker
PandaTrj/Genetic.gen
IkarusTrojan.Win32.VMProtect
FortinetW32/VMProtect.YD!tr
AVGWin32:PWSX-gen [Trj]

How to remove Razy.926734 (B)?

Razy.926734 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment