Malware

Lazy.105238 removal instruction

Malware Removal

The Lazy.105238 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.105238 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.105238?


File Info:

name: 2E6402B7DE4FA84FC219.mlw
path: /opt/CAPEv2/storage/binaries/658fb86dec84b7552466fac171e337453f0e4878efb20eee5bc3f2473ac664ed
crc32: 82AED0E1
md5: 2e6402b7de4fa84fc219939f618b6141
sha1: 154b842ea3e7677315d54c4b29f9bcf6c36f90df
sha256: 658fb86dec84b7552466fac171e337453f0e4878efb20eee5bc3f2473ac664ed
sha512: 453d3c15be634f292b6334908b6112673481c14ea53a3236b9e2c254ef065d3c31d290d0c2b9ea91495a9ca0a43a7786beb50c29d15a41b0097d0a4638f8cef3
ssdeep: 3072:IUojP2Dx0aKCq9WY5NM2I+dwQXFzJo1XUR5oBdNUzKn/eW66Xd8us3DAbJrmWiBp:IU1v29D5NM2JLoujceWnC3MviB/7yL9C
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T11E25D651BFA5CD65E2B148F0ADA6D6681A70FC14CC03870FF2E4B37EEDB26845D21A61
sha3_384: 0a8b36decd7b2da248d97014b2e9703d7fd881f3590ce59d27e202b53bb598c150d477c36708726963cc40cdbf554c37
ep_bytes: 4d5a0000000000000000000000000000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.105238 also known as:

LionicTrojan.Win32.Lazy.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Lazy.105238
FireEyeGeneric.mg.2e6402b7de4fa84f
ALYacGen:Variant.Lazy.105238
CylanceUnsafe
SangforWorm.Win32.Save.a
K7AntiVirusTrojan ( 004f5da31 )
K7GWTrojan ( 004f5da31 )
Cybereasonmalicious.ea3e76
CyrenW64/Trojan.FNS.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win64/Riskware.PEMalform.A
TrendMicro-HouseCallTROJ_GEN.R03BH09HN22
BitDefenderGen:Variant.Lazy.105238
NANO-AntivirusTrojan.Win64.Malformed.evafmt
TencentRiskware.Win64.Pemalform.xa
Ad-AwareGen:Variant.Lazy.105238
EmsisoftGen:Variant.Lazy.105238 (B)
BaiduWin32.Trojan.KillAV.f
VIPREGen:Variant.Lazy.105238
McAfee-GW-EditionBehavesLike.Win64.Sodinokibi.fz
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
JiangminHeur:Trojan/AntiAV
GoogleDetected
AviraTR/Trash.Gen
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Lazy.D19B16
GDataWin32.Trojan.Enistery.A
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!2E6402B7DE4F
MalwarebytesTrojan.BitCoinMiner
APEXMalicious
RisingTrojan.KillAV!1.9D3A (CLASSIC)
MAXmalware (ai score=80)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/PEMalform
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Lazy.105238?

Lazy.105238 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment