Malware

Lazy.109000 information

Malware Removal

The Lazy.109000 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.109000 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.109000?


File Info:

name: BD120E34A5FFCDBAD419.mlw
path: /opt/CAPEv2/storage/binaries/2a4d2d6a8aaced6e10678025ac748fe653c3fd76e88018872e480aeaa03af55d
crc32: 650585F9
md5: bd120e34a5ffcdbad41940ae5cb25e2c
sha1: 7a7202bfbe1cc92083dba5d7e39d5b887efa0461
sha256: 2a4d2d6a8aaced6e10678025ac748fe653c3fd76e88018872e480aeaa03af55d
sha512: 5b8b83ce5d3af2c87f527c883688ea7a2313bc518081c741a8caa950bed0e6e45c33536b5291bb3a38ebfcd03e668e1a7fddf6535e6d46e524f80b2c2cdf61e9
ssdeep: 6144:K/W/b4MpugzjDAq183nLbxKVJ3nCMkQe5HZAsHFZlxo:7/b4MphHgsHyMqLHFZlxo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12464BEA633D094B2E55700314966E639633EFC325F228207B7947A8E2E717A1DF1E363
sha3_384: bd8c728eae8bc8448d0ece1becea5ff872b298d0db2fdda7164db175a3fb364f010be9e9ec2ce21d96be2dc4fa61e62a
ep_bytes: 02cb4e20135099dd7a40e257bbaf589a
timestamp: 2018-02-07 22:45:06

Version Info:

0: [No Data]

Lazy.109000 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.109000
FireEyeGeneric.mg.bd120e34a5ffcdba
McAfeeGenericRXRN-RP!BD120E34A5FF
CylanceUnsafe
SangforTrojan.Win32.Sabsik.FL
CyrenW32/Ipamor.AW.gen!Eldorado
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_GEN.R002H06AR22
Paloaltogeneric.ml
ClamAVWin.Malware.Cerbu-9886333-0
BitDefenderGen:Variant.Lazy.109000
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Lazy.109000
EmsisoftGen:Variant.Lazy.109000 (B)
McAfee-GW-EditionGenericRXRN-RP!BD120E34A5FF
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataGen:Variant.Lazy.109000
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.RP.R468890
ALYacGen:Variant.Lazy.109000
VBA32Trojan.VBKrypt
APEXMalicious
IkarusTrojan.Win32.Ransom
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Ipamor.AW!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Lazy.109000?

Lazy.109000 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment