Malware

About “Lazy.198180” infection

Malware Removal

The Lazy.198180 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.198180 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Lazy.198180?


File Info:

name: 54F988F664DC9344CA4D.mlw
path: /opt/CAPEv2/storage/binaries/0b8f5b4437acbf20867a4b885803f2d167770fac7062618868d6384a53d968ec
crc32: 5CE298BC
md5: 54f988f664dc9344ca4db397575bf24b
sha1: 079be22d49730d0c1d06c786c445e157e0770116
sha256: 0b8f5b4437acbf20867a4b885803f2d167770fac7062618868d6384a53d968ec
sha512: 7765ecfb81c44b6337c181f0c0648d917e75eba2e36dc52755d28d1f2aead0c30ebc0bf0d00c224be4bf30e479a5e3cd74867782b8cb6ab2ca44142a8756f08b
ssdeep: 768:sXComOXfWFO5Q29sOcqtH5uqanxJF2bCfSuCjQppDWmG:0x4Qa29suranxH2ufS/CpDWN
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T10613E12053D88336DBBB9AF86431D1400532B74AE932CF9C9641455ADD73B0AEB33BB2
sha3_384: e3fdd6f7717d4aa315f9b4f575f20768eca178fd307527275d6bee6826c0ccb47901fa11dc9068b81f56c83a26b04011
ep_bytes: ff250020400000000000000000000000
timestamp: 2042-08-15 03:52:51

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Protect
FileVersion: 2.0.0.0
InternalName: Protect.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: Protect.exe
ProductName: Protect
ProductVersion: 2.0.0.0
Assembly Version: 2.0.0.0

Lazy.198180 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Lazy.4!c
CynetMalicious (score: 100)
FireEyeGen:Variant.Lazy.198180
McAfeeRDN/Generic PWS.y
ZillyaTrojan.AgentAGen.Win32.3612
SangforInfostealer.Win32.Agent.Vwbo
K7AntiVirusPassword-Stealer ( 0059564a1 )
AlibabaTrojan:MSIL/MalwareX.38c027ec
K7GWPassword-Stealer ( 0059564a1 )
CyrenW32/MSIL_Agent.DMG.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/PSW.Agent_AGen.U
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Lazy.198180
MicroWorld-eScanGen:Variant.Lazy.198180
AvastWin32:MalwareX-gen [Trj]
RisingTrojan.Generic/MSIL@AI.90 (RDM.MSIL:hisKbJeBC75q9DbXcbvGBg)
Ad-AwareGen:Variant.Lazy.198180
EmsisoftGen:Variant.Lazy.198180 (B)
VIPREGen:Variant.Lazy.198180
TrendMicroTROJ_GEN.R03BC0PGC22
McAfee-GW-EditionRDN/Generic PWS.y
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Lazy.198180
AviraTR/PSW.Agent.wzwjd
Antiy-AVLTrojan/Generic.ASMalwS.6C82
ArcabitTrojan.Lazy.D30624
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5201678
Acronissuspicious
ALYacGen:Variant.Lazy.198180
MAXmalware (ai score=85)
CylanceUnsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0PGC22
TencentWin32.Trojan.Psw.Adhl
IkarusTrojan.MSIL.PSW
MaxSecureTrojan.Malware.185466429.susgen
AVGWin32:MalwareX-gen [Trj]

How to remove Lazy.198180?

Lazy.198180 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment