Malware

Razy.987772 removal

Malware Removal

The Razy.987772 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.987772 virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Razy.987772?


File Info:

crc32: 0E72FFF5
md5: f301c5713b4135cbc5cfb3612ca80174
name: F301C5713B4135CBC5CFB3612CA80174.mlw
sha1: 8d90171cae53353e28d9c35562eb150513e6cd66
sha256: 4d0d2ecdf163eb133cce2c114d045b879524ab72fed356fbce024174c1c666eb
sha512: d487f3220c4951a2fcc05d54de806a1c4854b90ebb9132e18425d5aae796053f938b7fab02006d59839e994fd1b1ef39bec021341f44e4ecbdffe3e5a11d33fb
ssdeep: 12288:WzDxT9A1zqC8bP3nCeHzDxTNlGXd4OvXkLGHj0qTDzN:Wvxu1zqC8OAvxbGmA0UTPN
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: ImagingDevices.cpl
FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7600.16385
FileDescription: Imaging Devices Control Panel
OriginalFilename: ImagingDevices.cpl
Translation: 0x0409 0x04b0

Razy.987772 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.987772
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaWorm:Win32/Autorun.702ceeec
CyrenW64/Autorun.CV.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:VB-FBX
ClamAVWin.Worm.Vindor-9886047-0
BitDefenderGen:Variant.Razy.987772
MicroWorld-eScanGen:Variant.Razy.987772
SophosML/PE-A
TrendMicroPossible_SMDITERTAG
McAfee-GW-EditionBehavesLike.Win64.Virut.hh
FireEyeGeneric.mg.f301c5713b4135cb
EmsisoftGen:Variant.Razy.987772 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141992
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
GDataGen:Variant.Razy.987772
AhnLab-V3Worm/Win.Possible_smditertag.C4755843
McAfeeRDN/Autorun.worm.gen
MAXmalware (ai score=81)
VBA32Worm.AutoRun
TrendMicro-HouseCallPossible_SMDITERTAG
RisingWorm.VB!1.DA3E (CLASSIC)
YandexTrojan.GenAsa!g8z8LT30jj4
IkarusTrojan.Win32.Vindor
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Pajetbin.K!tr
AVGWin32:VB-FBX
Paloaltogeneric.ml

How to remove Razy.987772?

Razy.987772 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment