Malware

Lazy.292907 removal instruction

Malware Removal

The Lazy.292907 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.292907 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Lazy.292907?


File Info:

name: A627854F8AD050D9BC25.mlw
path: /opt/CAPEv2/storage/binaries/82f326af12288f8961748a1646142e110e16249278ddb78d28ae4d688b509ef1
crc32: FD37E0BC
md5: a627854f8ad050d9bc2532043d7eb181
sha1: c3b4b1b333575cd6c2ccd1773e31ccae64fec37a
sha256: 82f326af12288f8961748a1646142e110e16249278ddb78d28ae4d688b509ef1
sha512: 931c8a965d780bec24b391cd6bf2655d86630294f41fde0bdcc5041770d13bdb074db6623371155e382232d8ae2ba4a16786d3ced5335a558a252d42c5f55be4
ssdeep: 384:NeMjEVrl7Q7ria1rQVlQ1dFWddjWw7LSu8WitLHg1U9ee1p17oYvSFwfs:4eE+rO/JN/Wz9jp17oYvSFB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13DA23B1067EC8B32C9BE1BF08C7252014AB2E3165963EB6E5DC8B1BA5D9378507813E6
sha3_384: aaf57da9ab678bf7a650169ea020587b418e12d84e1ba02b0bc7e6b5bb8afc325a51e8e3950b1be03d52f8a75b474547
ep_bytes: ff250020400000000000000000000000
timestamp: 2015-09-22 22:31:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: VB-RAT-Client
FileVersion: 1.0.0.0
InternalName: VB-RAT-Client.exe
LegalCopyright: Copyright © 2013
LegalTrademarks:
OriginalFilename: VB-RAT-Client.exe
ProductName: VB-RAT-Client
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.292907 also known as:

Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Lazy.292907
FireEyeGen:Variant.Lazy.292907
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
BitDefenderThetaGen:NN.ZemsilF.36348.bm0@a0P09fm
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.AGS
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Small.gen
BitDefenderGen:Variant.Lazy.292907
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Lazy.292907 (B)
VIPREGen:Variant.Lazy.292907
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Lazy.292907
ArcabitTrojan.Lazy.D4782B
ZoneAlarmHEUR:Backdoor.MSIL.Small.gen
MicrosoftBackdoor:MSIL/Geravib.A
ALYacGen:Variant.Lazy.292907
MAXmalware (ai score=86)
FortinetMSIL/Generic.DN.4425E2!tr
AVGWin32:Evo-gen [Trj]

How to remove Lazy.292907?

Lazy.292907 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment