Malware

Lazy.187303 removal instruction

Malware Removal

The Lazy.187303 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.187303 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Lazy.187303?


File Info:

name: D52A1C318C3F8DC370F2.mlw
path: /opt/CAPEv2/storage/binaries/ab45ec055f2c559e7f9ee585c43a7ca5058a7190d179a5c1043b3b8b22346d32
crc32: 049BDBBE
md5: d52a1c318c3f8dc370f291ecd70e792b
sha1: 0940ddace301b92affdd2496ff889b2d5e755389
sha256: ab45ec055f2c559e7f9ee585c43a7ca5058a7190d179a5c1043b3b8b22346d32
sha512: 8589f0ff205bd978cda15d0ab2a977fcbce49d911c176f2ce71ac1fb824f1c52c0641bbba45fbb7a3d5a6231eaba71ea188dee8f9a3b059d762b236b097f21b4
ssdeep: 768:ZpyXEQqnEx/2T6MlLIvSIpW5DyVuuuZ1K+BYvJ7LDaTHwxf4gHxzYcHeQi:ZIr6I0ByE+1L34gHAQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CDF24B1173CB0372C67E5AB428B852954372A379A627DBE93CCC009D6FA674243727DB
sha3_384: 3006a05c8cdb4469904f55044246b455698ac2f5f8774f3cd8e61a444ccf10cd7eba22b5d3d0c8bbc3ade46e72bced32
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-07-27 08:27:13

Version Info:

Translation: 0x0000 0x04b0
FileDescription: SystemInfo Host Client
FileVersion: 2.0.180.210
InternalName: sihost.exe
LegalCopyright: Copyright © 2017
OriginalFilename: sihost.exe
ProductVersion: 2.0.180.210
Assembly Version: 2.0.180.210

Lazy.187303 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Lazy.187303
FireEyeGen:Variant.Lazy.187303
McAfeeArtemis!D52A1C318C3F
CylanceUnsafe
K7GWAdware ( 0051560a1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Adware.OxyPumper.AC
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderGen:Variant.Lazy.187303
AvastWin32:Adware-gen [Adw]
Ad-AwareGen:Variant.Lazy.187303
SophosGeneric ML PUA (PUA)
DrWebTrojan.DownLoaderNET.453
VIPREGen:Variant.Lazy.187303
TrendMicroTROJ_GEN.R032C0WHB22
McAfee-GW-EditionArtemis
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Lazy.187303 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.187303
AviraADWARE/OxyPumper.zfkkg
MAXmalware (ai score=89)
ArcabitTrojan.Lazy.D2DBA7
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
BitDefenderThetaGen:NN.ZemsilF.34592.cm0@aW7G53o
ALYacGen:Variant.Lazy.187303
TrendMicro-HouseCallTROJ_GEN.R032C0WHB22
RisingDownloader.TaskLoader!1.CDEE (CLASSIC)
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/OxyPumper
AVGWin32:Adware-gen [Adw]

How to remove Lazy.187303?

Lazy.187303 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment