Malware

About “Razy.99498” infection

Malware Removal

The Razy.99498 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.99498 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Executed a process and injected code into it, probably while unpacking
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

jebena.ananikolic.su
peer.pickeklosarske.ru
teske.pornicarke.com
juice.losmibracala.org

How to determine Razy.99498?


File Info:

crc32: 96CD22CD
md5: de0b02c5604b2f6cc2d7d885f982bfa2
name: DE0B02C5604B2F6CC2D7D885F982BFA2.mlw
sha1: a4050cdad75247e4315d22775d676b7219acb792
sha256: de9ad41d13f391decddffe504c405fb6df0601b54ce81746a7026f385d0036e8
sha512: 7d1cf75ed7427321886913a6320270e58e08866cb14dab113213a019e7e00e247fb88a5761fb7e03e2a0b622109c83a46ef0a996aef037cfb70bd7d1a636f342
ssdeep: 3072:BU0DMSrqL3CZkdzpSl7O2IyZvkeleeImum8Q1Dy4rUu:BTYyBZEpSpOiZ8Qejmukz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Razy.99498 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 002014c11 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed.21635
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.99498
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 002014c11 )
Cybereasonmalicious.5604b2
CyrenW32/SmallTrojan.V.gen!Eldorado
SymantecW32.Pilleuz!gen19
ESET-NOD32a variant of Win32/Kryptik.KAU
APEXMalicious
AvastWin32:Morphex [Cryp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.99498
MicroWorld-eScanGen:Variant.Razy.99498
TencentWin32.Trojan.Generic.dgch
Ad-AwareGen:Variant.Razy.99498
SophosML/PE-A + Mal/Palevo-A
ComodoTrojWare.Win32.Kryptik.KAU@2nssd5
BitDefenderThetaGen:NN.ZexaF.34170.kyW@aqD30Fbi
VIPREWorm.Win32.Palevo.smgl (v)
TrendMicroWORM_PALEVO.SMGL
McAfee-GW-EditionBehavesLike.Win32.Rimecud.ch
FireEyeGeneric.mg.de0b02c5604b2f6c
EmsisoftGen:Variant.Razy.99498 (B)
SentinelOneStatic AI – Malicious PE
JiangminPack.Mal.AntiVM
AviraTR/Crypt.ZPACK.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Razy.D184AA
GDataGen:Variant.Razy.99498
AhnLab-V3Win32/Palevo14.worm.Gen
Acronissuspicious
McAfeeW32/Rimecud.gen.ay
MAXmalware (ai score=84)
VBA32BScope.Trojan.Downloader
PandaTrj/Rimecud.a
TrendMicro-HouseCallWORM_PALEVO.SMGL
RisingTrojan.Generic@ML.100 (RDML:ScRzkjLqz1499cM8A6LjPw)
YandexWorm.Palevo.Gen!Pac.11
IkarusP2P-Worm.Win32.Palevo
FortinetW32/Palevo.AJ!tr
AVGWin32:Morphex [Cryp]

How to remove Razy.99498?

Razy.99498 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment