Malware

Should I remove “Ser.Razy.15235 (B)”?

Malware Removal

The Ser.Razy.15235 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Razy.15235 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Ser.Razy.15235 (B)?


File Info:

name: E5BB47483E5BCDD6B2FD.mlw
path: /opt/CAPEv2/storage/binaries/0f6466843e400d0142a59e4e72f29c60a2a0ae43b4a7e6eeee4523b8b3bd4565
crc32: B323F361
md5: e5bb47483e5bcdd6b2fde03ce7910ee1
sha1: d31c8e883896dd7aafcc4d5a716f18782a4d49a0
sha256: 0f6466843e400d0142a59e4e72f29c60a2a0ae43b4a7e6eeee4523b8b3bd4565
sha512: d783c7490068ed7485cbb3ef3970eeadd3c195c19162a8ef791b3b8eb0b0c89e2e21efe68b57928caa353f21bd3f5c9b3b993a29c26b1c1875519b947f401860
ssdeep: 12288:L7QWyvVw7/IX725pU2SO1kaLDysfv6c9IqKF+8M/g8wVBe:L7Pb7/IX72r/1koDTfjcFVOwne
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T199D46B23BBD88B91C23876BB42A5ED0223B1ECE75721C72B1F9584D518677C16E1D23B
sha3_384: 20c4260cb3156c51b5d291da70cc195ec58b92619549111d9b5f045e5c3f84035e77cffed02b08823b83354cbbeebd3a
ep_bytes: ff250020400000000000000000000000
timestamp: 1984-02-26 21:34:41

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ProjDipali
FileVersion: 1.0.0.0
InternalName: ProjDipali.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: ProjDipali.exe
ProductName: ProjDipali
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Ser.Razy.15235 (B) also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.32857
MicroWorld-eScanGen:Variant.Ser.Razy.15235
FireEyeGeneric.mg.e5bb47483e5bcdd6
CAT-QuickHealTrojanRansom.MSIL
McAfeeArtemis!E5BB47483E5B
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.78622
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00589ce11 )
K7AntiVirusTrojan ( 00589ce11 )
BitDefenderThetaGen:NN.ZemsilF.34062.Lm0@aW44Iam
CyrenW32/MSIL_Agent.CFH.gen!Eldorado
SymantecMSIL.Packed.2
ESET-NOD32a variant of MSIL/Kryptik.ADIT
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan-Ransom.MSIL.Blocker.gen
BitDefenderGen:Variant.Ser.Razy.15235
Ad-AwareGen:Variant.Ser.Razy.15235
EmsisoftGen:Variant.Ser.Razy.15235 (B)
McAfee-GW-EditionBehavesLike.Win32.Fareit.jh
SophosMal/Generic-S
GDataGen:Variant.Ser.Razy.15235
AviraTR/Kryptik.ihikv
Antiy-AVLTrojan/Generic.ASMalwS.34C8EBE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4748858
VBA32TScope.Trojan.MSIL
ALYacGen:Variant.Ser.Razy.15235
MAXmalware (ai score=80)
MalwarebytesBackdoor.AsyncRAT
APEXMalicious
YandexTrojan.Kryptik!ryFyFq74vU8
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Kryptik.ADIT!tr
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.83896d
PandaTrj/GdSda.A

How to remove Ser.Razy.15235 (B)?

Ser.Razy.15235 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment