Malware

Ser.Razy.11515 (B) removal

Malware Removal

The Ser.Razy.11515 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Razy.11515 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Ser.Razy.11515 (B)?


File Info:

crc32: 0596225E
md5: 7ab4ec6c6355e7ba1a9e8f60b64d340d
name: 7AB4EC6C6355E7BA1A9E8F60B64D340D.mlw
sha1: 5d4471675cab8587dfa0314f8e68db8f00b5a7d1
sha256: 73a491756afccc707ab3ecf333399908d674e76f9f4e93895e7ca1976df5cd38
sha512: 96b784e3aeb8df7d15645a64ae0b1bbaac1cadd3872a03b985cf69a5211a2f23fb4d39eb9ad8399d58e975f77bd22137b0e6364748d4f0d3cff9018dee8cb7c6
ssdeep: 6144:kvjLG6v/d4ufDuAWXfkO/s9seS+8OWW973KEYOQCbQ3Pf:GLBv/iuC7cuy3xNxuOnQ3n
type: PE32 executable (GUI) Intel 80386 system file, for MS Windows

Version Info:

0: [No Data]

Ser.Razy.11515 (B) also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004f76a01 )
Elasticmalicious (high confidence)
ALYacGen:Variant.Ser.Razy.11515
CylanceUnsafe
ZillyaTrojan.Generic.Win32.303343
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004f76a01 )
Cybereasonmalicious.c6355e
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.NHQ
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.SageCrypt.ezq
AlibabaRansom:Win32/SageCrypt.00e2c926
NANO-AntivirusTrojan.Win32.SageCrypt.eneofo
ViRobotTrojan.Win32.Z.Sagecrypt.321827
Ad-AwareGen:Variant.Ser.Razy.11515
SophosMal/Generic-S
ComodoMalware@#etl4inwtsmoi
DrWebTrojan.Encoder.10180
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.AdwareDoma.fc
EmsisoftGen:Variant.Ser.Razy.11515 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.SageCrypt.gd
WebrootW32.Gen.BT
AviraHEUR/AGEN.1129607
Antiy-AVLTrojan[Ransom]/Win32.SageCrypt
ArcabitTrojan.Ser.Razy.D2CFB
ZoneAlarmTrojan-Ransom.Win32.SageCrypt.ezq
MicrosoftVirTool:Win32/Injector.GE
AhnLab-V3Trojan/Win32.SageCrypt.C1898109
MAXmalware (ai score=100)
MalwarebytesMachineLearning/Anomalous.97%
PandaTrj/CI.A
TrendMicro-HouseCallRansom_MILICRY.F117D7
TencentMalware.Win32.Gencirc.1149bc31
YandexTrojan.Filecoder!0DI30bGCmkA
IkarusTrojan.Win32.Filecoder
FortinetW32/Kryptik.GKUA!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Ser.Razy.11515 (B)?

Ser.Razy.11515 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment