Malware

Razy.960265 (B) removal guide

Malware Removal

The Razy.960265 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.960265 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.960265 (B)?


File Info:

name: ECAB85C3BB0CD82BDAAA.mlw
path: /opt/CAPEv2/storage/binaries/da842d2fde73922bdf6453d04044712e5985bec870539798b6d78937294fb484
crc32: C9079A88
md5: ecab85c3bb0cd82bdaaa8f909bf997fc
sha1: 17541271f46649570a8d078d586937c8e101aba1
sha256: da842d2fde73922bdf6453d04044712e5985bec870539798b6d78937294fb484
sha512: c0058bc234b760e39b6e4cf8526e3a6a279abb92f6f5c981b6cec21c65df476725b4e49bd4b5854d66c738d0bff6db79b9843668b74cc7ee1c1f22d77e817c2c
ssdeep: 24576:58xA7wnNTBRXVav9MkFH35DMw2n/qIjtAT3GRSI8LUlFl5FpU:SSwnNTBGv9MY35DMnCIjtAybcY/U
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1D075D60126E14BEDED62C331D9A5FAB5156BBE212931E20F329E3A0FF871F415927712
sha3_384: 2dec9cb5c9ab097b598b59f4566c222005057e957641769fb29c25cd3092e743002e346f7e7699987f9605e433ae24e1
ep_bytes: 4883ec28488d0d150a0000e8e0030000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Razy.960265 (B) also known as:

LionicTrojan.Win32.Bulz.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.960265
FireEyeGeneric.mg.ecab85c3bb0cd82b
McAfeeArtemis!ECAB85C3BB0C
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojanDropper:Win64/Midie.2f16d98b
CyrenW64/Midie.AA.gen!Eldorado
SymantecTrojan.Gen.MBT
ClamAVWin.Trojan.Generic-9865438-0
KasperskyUDS:Trojan-Dropper.Win32.Agent.bjxyoc
BitDefenderGen:Variant.Razy.960265
AvastWin64:Malware-gen
RisingTrojan.Kryptik!1.B239 (CLASSIC)
Ad-AwareGen:Variant.Razy.960265
EmsisoftGen:Variant.Razy.960265 (B)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
IkarusTrojan.Dropper
GDataGen:Variant.Razy.960265 (2x)
MAXmalware (ai score=81)
Antiy-AVLWorm/Win32.AutoRun
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
TrendMicro-HouseCallTROJ_GEN.R002H0CKM21
FortinetW32/Midie.9797!tr
AVGWin64:Malware-gen

How to remove Razy.960265 (B)?

Razy.960265 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment