Malware

Lazy.238286 (B) removal

Malware Removal

The Lazy.238286 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.238286 (B) virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.238286 (B)?


File Info:

name: 421F321531900A60C932.mlw
path: /opt/CAPEv2/storage/binaries/cf63e96adc79ab401b894087eb6117e69735e4d36cc5f2bc5c6abf156a463121
crc32: BD7CC3D5
md5: 421f321531900a60c9327ec76b393b40
sha1: 3a4706e5c8109a01565641c6acd5627fa844087b
sha256: cf63e96adc79ab401b894087eb6117e69735e4d36cc5f2bc5c6abf156a463121
sha512: 08eb8c39e59fd49b231c0f40932f25d6faf2bce7de754238338913c1ae5b542c914d5bb8b96f9b16f5f6b7c340c07eb072edd16f162c944473ed47718adb30c3
ssdeep: 24576:yyXAMN48Zz/YIry++gaZRlWR6jsAqO5y72/:/z/YIrq1s8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B059E313DC4C172EDE220BA46ECF935467DE0B0072647CB56C85BEEE6606D16F32A96
sha3_384: f8b3030414dfef770dbdbf540d7c74914f0692ff9230a4b2e15c63a2eb08ec64f82f89accdf5976005bf3f660c9a68d7
ep_bytes: e93e710300e994d80400e933f60300e9
timestamp: 2022-08-29 06:30:39

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Device driver software installation
FileVersion: 5.2.3668.0
InternalName: NDAdmin.EXE
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: NDAdmin.EXE
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.2.3668.0
Translation: 0x0409 0x04b0

Lazy.238286 (B) also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Lazy.238286
FireEyeGen:Variant.Lazy.238286
ALYacGen:Variant.Lazy.238286
CylanceUnsafe
VIPREGen:Variant.Lazy.238286
CyrenW32/Kryptik.HKD.gen!Eldorado
ESET-NOD32a variant of Win32/GenKryptik_AGen.KJ
KasperskyHEUR:Backdoor.Win32.Mokes.gen
BitDefenderGen:Variant.Lazy.238286
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.Lazy.238286
EmsisoftGen:Variant.Lazy.238286 (B)
GDataGen:Variant.Lazy.238286
ArcabitTrojan.Lazy.D3A2CE
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.CrypterX-gen.R512732
MAXmalware (ai score=87)
VBA32Malware-Cryptor.Inject.gen
MalwarebytesTrojan.SmokeLoader
RisingBackdoor.Mokes!8.619 (TFE:5:S0nMDSQTT0C)
IkarusTrojan.Win32.RedlineStealer
AVGWin32:Trojan-gen

How to remove Lazy.238286 (B)?

Lazy.238286 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment