Malware

Lazy.255787 (B) removal

Malware Removal

The Lazy.255787 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.255787 (B) virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.255787 (B)?


File Info:

name: D156EAC1780C72954C45.mlw
path: /opt/CAPEv2/storage/binaries/707660d050603e4b30a9c0c5aee554f9aa2e456a79dab1661e728e1a04b33377
crc32: 0DAF77AA
md5: d156eac1780c72954c45d397022ce40d
sha1: 45f5652138d6850d918250c22296484f8f120355
sha256: 707660d050603e4b30a9c0c5aee554f9aa2e456a79dab1661e728e1a04b33377
sha512: 923127349c2cc7a8ba7f9b721f53ea999f1df1b393883d88003d0dde90722b4c7d2c8d3dce8d9f2a83084b09a7373910fad51d2ba51f9a695f184faded144f13
ssdeep: 6144:5F9nku2teariY9bJf/rKcI9rJCY/V+/XN7s9BCq8awaHSjJZYTfHQp4s:L9nk7Jf/lOV+l7s9f8aOEQh
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T16AA47C4AEB9484F1E657A138C97AC672F7B2B88D1E20674B1265C76F3F336506D2C321
sha3_384: 6581cfd5376459f0e505c86832d05ddc834b3cbae7443ad2fb7603077a2d7fd9f043b2f9c04eba598af6abc00b357b03
ep_bytes: e848feffffc82000004c897c24f84883
timestamp: 2020-02-12 21:56:44

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft OneNote Internet Explorer Content Service
FileVersion: 16.0.12430.20288
InternalName: OneNote
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: IEContentService.exe
ProductName: Microsoft OneNote
ProductVersion: 16.0.12430.20288
Translation: 0x0000 0x04e4

Lazy.255787 (B) also known as:

LionicTrojan.Win32.Crypmodng.tsaK
DrWebWin32.HLLP.Azov.2
MicroWorld-eScanGen:Variant.Lazy.255787
ALYacGen:Variant.Lazy.255787
CylanceUnsafe
K7AntiVirusTrojan ( 0059aa0b1 )
AlibabaTrojan:Win64/Filecoder.388295c2
K7GWTrojan ( 0059aa0b1 )
CrowdStrikewin/malicious_confidence_70% (D)
CyrenW64/Ipamor.A
SymantecML.Attribute.HighConfidence
ESET-NOD32Win64/Filecoder.GG
APEXMalicious
BitDefenderGen:Variant.Lazy.255787
AvastWin64:Trojan-gen
Ad-AwareGen:Variant.Lazy.255787
EmsisoftGen:Variant.Lazy.255787 (B)
VIPREGen:Variant.Lazy.255787
TrendMicroRansom.Win64.AZVO.SMYXCJ5
McAfee-GW-EditionBehavesLike.Win64.HLLP.gh
FireEyeGen:Variant.Lazy.255787
SophosMal/Generic-S
GDataGen:Variant.Lazy.255787
JiangminTrojan.Blocker.urx
GoogleDetected
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASBOL.C73A
ArcabitTrojan.Lazy.D3E72B
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.R533886
McAfeeArtemis!D156EAC1780C
MalwarebytesMalware.AI.1053266483
RisingRansom.Agent!8.6B7 (TFE:2:U9tOTBNOHOO)
IkarusWin32.Outbreak
FortinetW64/Filecoder.GG!tr
AVGWin64:Trojan-gen

How to remove Lazy.255787 (B)?

Lazy.255787 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment