Malware

Lazy.196746 (B) information

Malware Removal

The Lazy.196746 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.196746 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Harvests cookies for information gathering

How to determine Lazy.196746 (B)?


File Info:

name: 1BE1116C3B33CF8E9717.mlw
path: /opt/CAPEv2/storage/binaries/c10f04da3d42be4765d265940e3fa1fadda479c792a6fe85dc63d8b1cacad3bc
crc32: CFF74926
md5: 1be1116c3b33cf8e971789b5baf64b2f
sha1: 9cf388ee57510c3fe62c3b40df9dd8fc1962b950
sha256: c10f04da3d42be4765d265940e3fa1fadda479c792a6fe85dc63d8b1cacad3bc
sha512: 4ad33ad823ec9e035083f8a72dbfdf9a286f0974b65357fc7558ea29d2d2cb637fac5724cb6904387ba6356b70464bf16dbd8b5460ede53e400eaa16076fc75a
ssdeep: 6144:FZ3JiNN0ee2NEgJ4UgUNIFCRIBDdP/QA4EVX+t4TrHBxEphl7/FoEajo:FZ3owANYUg8IFAIBmyVX+t4TDBxE/l7B
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11E74C001BAC189B2D5720D325A799B21A97DBC201F24CADFB3EC796DDB312C09635763
sha3_384: 78772cf10d9fe29f002e8a8e80c10873020df8090bc604db930f1d239e36e6802738b58e4888ecda495aa6ba2b4dacfc
ep_bytes: e866050000e978feffffcccccccccccc
timestamp: 2021-10-08 08:51:51

Version Info:

0: [No Data]

Lazy.196746 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (moderate confidence)
DrWebBackDoor.Bladabindi.13678
MicroWorld-eScanGen:Variant.Lazy.196746
FireEyeGen:Variant.Lazy.196746
ALYacGen:Variant.Lazy.196746
MalwarebytesMalware.AI.3910226547
ZillyaTrojan.Bingoml.Win32.7603
Cybereasonmalicious.e57510
BitDefenderThetaGen:NN.ZevbaF.34582.an0@a48F5Cdi
ESET-NOD32a variant of Win32/Injector.CECD
KasperskyTrojan.Win32.Injuke.fpxx
BitDefenderGen:Variant.Lazy.196746
NANO-AntivirusTrojan.Win32.Bladabindi.jpqftj
AvastWin32:RATX-gen [Trj]
SophosGeneric ML PUA (PUA)
VIPREGen:Variant.Lazy.196746
TrendMicroTROJ_GEN.R002C0PH322
McAfee-GW-EditionBehavesLike.Win32.Ramnit.fh
EmsisoftGen:Variant.Lazy.196746 (B)
Antiy-AVLTrojan/Generic.ASMalwS.3D8
GDataGen:Variant.Lazy.196746
CynetMalicious (score: 100)
MAXmalware (ai score=84)
VBA32Trojan.Meterpreter
APEXMalicious
RisingTrojan.Injector!8.C4 (CLOUD)
SentinelOneStatic AI – Malicious SFX
AVGWin32:RATX-gen [Trj]

How to remove Lazy.196746 (B)?

Lazy.196746 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment