Malware

About “Razy.941718” infection

Malware Removal

The Razy.941718 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.941718 virus can do?

  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • Attempts to stop active services
  • Exhibits possible ransomware file modification behavior
  • Appends a known encryptJJS ransomware file extension to files that have been encrypted
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Razy.941718?


File Info:

crc32: 4D88ABDB
md5: 3449ae2ae67e448e4c3d14a281a189dc
name: 3449AE2AE67E448E4C3D14A281A189DC.mlw
sha1: 50db262b4578fa4de18d41f6fe9e8657a3aad795
sha256: 1407486e00e1c186e5ea73d53c9f026f1e72609cb6fcd90ebc4545aae30728db
sha512: 12e0de43db2d8d9ca7c9498028633bd05b49380cc78ff4998d9e62a71a367be695829e98cf3a1169944bfe8887fea35db4ffc07647f858c80d746de3e626fc25
ssdeep: 1536:o73nkB0DyMgQSm9NwcKzwpR+7JICS4An11SujGC:M/hKzstZ1p
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.941718 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
ClamAVWin.Ransomware.Sodinokibi-7013612-0
ALYacGen:Variant.Razy.941718
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
SymantecRansom.Sodinokibi
ESET-NOD32a variant of Win32/Filecoder.Sodinokibi.B
APEXMalicious
AvastWin32:Sodinokibi-D [Ransom]
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Sodin.aki
BitDefenderGen:Variant.Razy.941718
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.941718
Ad-AwareGen:Variant.Razy.941718
SophosML/PE-A + Troj/Sodino-BU
BitDefenderThetaAI:Packer.186637C61E
McAfee-GW-EditionBehavesLike.Win32.Generic.nh
FireEyeGeneric.mg.3449ae2ae67e448e
EmsisoftGen:Variant.Razy.941718 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASCommon.1EF
MicrosoftRansom:Win32/Revil.A
ArcabitTrojan.Razy.DE5E96
GDataGen:Variant.Razy.941718
AhnLab-V3Trojan/Win.Ransom.R442669
Acronissuspicious
McAfeeSodinokibi!3449AE2AE67E
MAXmalware (ai score=85)
VBA32BScope.TrojanRansom.Sodin
MalwarebytesSodinokibi.Ransom.Encrypt.DDS
RisingTrojan.Generic@ML.100 (RDML:JXp+HWUL+zJc1xeIVvxgnw)
IkarusTrojan-Ransom.Sodinokibi
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Sodinokibi-D [Ransom]

How to remove Razy.941718?

Razy.941718 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment