Malware

Razy.968817 removal guide

Malware Removal

The Razy.968817 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.968817 virus can do?

  • At least one process apparently crashed during execution
  • Unconventionial binary language: Russian
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Razy.968817?


File Info:

name: E21A7DBA1F1B42EA53B3.mlw
path: /opt/CAPEv2/storage/binaries/d2ff17a72350dfdddd4e1c149af3e56e8372e2a15207770b3430a616026d029a
crc32: 7962B466
md5: e21a7dba1f1b42ea53b3bb7faba36158
sha1: 772cce5b7b899852f47fe082a1b50dd84438f4fa
sha256: d2ff17a72350dfdddd4e1c149af3e56e8372e2a15207770b3430a616026d029a
sha512: ab5586ff914150181dfaf1cb7254ba0eeb623b4affacbedb7fa52608a41ef31e58c3cb3141374eee21a9fae48f4965043b3fbd71308eb6b73e792e0c4f7c5a71
ssdeep: 6144:V8HAopqjE1YkmxxmkujP4XV6sK4uogs35PI++Nx4ZyRPk:V8Hhqo61degXV6FoZiVRRPk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118249D8B7001B083D4311FB0EA9718E855066D7A5EEADA6FD27278DBF8B01D1DD3B921
sha3_384: 36e8ed3484d531020824f2ae067b8374790c7faf0aaf8e9ade999fb9126b1e967726181347c6d03ea2fda4c2fd3874fc
ep_bytes: e8d1f9ffffe936ffffff000000000000
timestamp: 2011-01-06 15:53:31

Version Info:

CompanyName: Корпорация Майкрософт
FileDescription: Текстовый редактор WordPad (MFC)
FileVersion: 5.1.2600.5512 (xpsp.080413-2105)
InternalName: wordpad
LegalCopyright: © Корпорация Майкрософт. Все права защищены.
OriginalFilename: wordpad
ProductName: Операционная система Microsoft® Windows®
ProductVersion: 5.1.2600.5512
Translation: 0x0419 0x04b0

Razy.968817 also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 100)
FireEyeGeneric.mg.e21a7dba1f1b42ea
CAT-QuickHealTrojanPWS.Zbot.Y
McAfeeGenericR-HFR!E21A7DBA1F1B
CylanceUnsafe
VIPRETrojan.Win32.Reveto.D (v)
SangforBackdoor.Win32.Bot.78614
K7AntiVirusTrojan ( 004f11e51 )
AlibabaTrojan:Win32/Kryptik.f7206272
K7GWTrojan ( 004f11e51 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Cryptic.DWD
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Kryptik.DXOC
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.968817
NANO-AntivirusTrojan.Win32.Crypted.ecksgj
MicroWorld-eScanGen:Variant.Razy.968817
AvastWin32:Reveton-Y [Trj]
TencentMalware.Win32.Gencirc.114be685
Ad-AwareGen:Variant.Razy.968817
EmsisoftGen:Variant.Razy.968817 (B)
ZillyaTrojan.Kryptik.Win32.879375
TrendMicroTSPY_ZBOT.SMES
McAfee-GW-EditionBehavesLike.Win32.Drixed.dh
SophosML/PE-A + Mal/EncPk-ABFO
IkarusTrojan-Ransom.Foreign
GDataGen:Variant.Razy.968817
JiangminTrojan/Generic.zjfl
eGambitGeneric.Malware
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.AGeneric
ArcabitTrojan.Razy.DEC871
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Dynamer!ac
AhnLab-V3Spyware/Win32.Zbot.C705285
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34212.nO1@ae8SbEfi
ALYacGen:Variant.Razy.968817
MAXmalware (ai score=100)
VBA32Trojan.Menti
MalwarebytesMalware.AI.4173525964
TrendMicro-HouseCallTSPY_ZBOT.SMES
RisingTrojan.Kryptik!8.8 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ABC!tr
WebrootW32.Infostealer.Zeus
AVGWin32:Reveton-Y [Trj]
Cybereasonmalicious.a1f1b4
PandaBck/Qbot.AO

How to remove Razy.968817?

Razy.968817 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment