Malware

Lazy.101944 (B) (file analysis)

Malware Removal

The Lazy.101944 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.101944 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.101944 (B)?


File Info:

name: A70A1DB35E87834088D2.mlw
path: /opt/CAPEv2/storage/binaries/376044ec19ab0144382a9a70bd0acf77cd81d5975d4599ba15888e0ed787efbc
crc32: 25D879B1
md5: a70a1db35e87834088d237001cc38ae7
sha1: cbbfb5b024b9af0830b21877933af0ab7ec1e9ae
sha256: 376044ec19ab0144382a9a70bd0acf77cd81d5975d4599ba15888e0ed787efbc
sha512: c3231394f67e195aefe44a22151c4d0d015e0a11ead3cccfa35d3213e922c7629c4057dc2e57178570675a9ca264bc0977a2b8e113d9f654ca691e08e23c5ba3
ssdeep: 12288:7MPrXOcmFFgOkyU532WTh0tFhfa3WLEuzYxHIsM+:gPjO7KX53RTh0tFda3WLqLM+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T107C46C02B7E58272DAE311718D6DA328957DFEE00F2186FB62E4776DDD302D0A931786
sha3_384: f17f6e1fc0ba64785eda84d5100137f9c7aeec7541c5fa6ccbfa32a8ce3a2ff2c5862456419a98e61fbc62e17f8fed6e
ep_bytes: 50c645fc04e8bb0200005957538d4db8
timestamp: 2018-01-15 16:10:52

Version Info:

0: [No Data]

Lazy.101944 (B) also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Lazy.4!c
MicroWorld-eScanGen:Variant.Lazy.101944
FireEyeGeneric.mg.a70a1db35e878340
ALYacGen:Variant.Lazy.101944
SangforRiskware.Win32.Wacapew.C
CyrenW32/Agent.CPF.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Lazy.101944
AvastWin32:Malware-gen
EmsisoftGen:Variant.Lazy.101944 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
SophosGeneric ML PUA (PUA)
IkarusTrojan.Msil
JiangminPacked.Krap.gvvo
Antiy-AVLTrojan/Generic.ASMalwS.330066B
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Lazy.101944
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R470343
McAfeeRDN/Generic.grp
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002H0CB322
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.2D50!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Lazy.101944 (B)?

Lazy.101944 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment