Malware

Lazy.293059 removal guide

Malware Removal

The Lazy.293059 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.293059 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Lazy.293059?


File Info:

name: 0CE71F93E31D2686EC17.mlw
path: /opt/CAPEv2/storage/binaries/c87eb0afc670608425b633e858f001ed2ed670854489b0eadeaa9e78948827e9
crc32: 077B14B9
md5: 0ce71f93e31d2686ec17ee48f3edf7dc
sha1: c706d1903378170caa1d066da3579c9eb6b6d63d
sha256: c87eb0afc670608425b633e858f001ed2ed670854489b0eadeaa9e78948827e9
sha512: 0d4d78fc1ca5a34ae405a2ab9a22f6c8a20d1655ee22b4ff170e782483a90cd9f2dbd3392d6cf2ce1d48e20096395ef36faf1a7d96563502f097b8f3c0d4683d
ssdeep: 1536:FlaZHWZXr7hr0CwCjJnZqnw9x0vErb/9fb:Fla0Hwy5Zj9xemdb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D0737C11FABCC26AEE5A0B7B907126524E7EF94D7412DB1A1A44304E2F23309DE64B77
sha3_384: 1f5d9ec4ebbfcccc008f258dd04b17542f796cc195f9f055c87390a2d9796e745bb4ab7bd7e697e43e04f95ae2999a6b
ep_bytes: ff250020400000000000000000000000
timestamp: 2039-04-16 16:21:03

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: IntQB
FileVersion: 31.1.4008.3108
InternalName: IntQB.exe
LegalCopyright:
LegalTrademarks: 31.1.4008.3245
OriginalFilename: IntQB.exe
ProductName: IntQB for Windows
ProductVersion: 31.1.4008.3108
Assembly Version: 31.1.4008.3108

Lazy.293059 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Agent.Y!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.293059
SkyhighGenericRXVH-LL!0CE71F93E31D
McAfeeGenericRXVH-LL!0CE71F93E31D
Cylanceunsafe
ZillyaTrojan.Agent.Win32.3219488
SangforTrojan.Win32.Lazy.V7eu
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
KasperskyTrojan.Win32.Agent.xatneu
BitDefenderGen:Variant.Lazy.293059
AvastWin32:BackdoorX-gen [Trj]
TencentMalware.Win32.Gencirc.13bf5b8c
EmsisoftGen:Variant.Lazy.293059 (B)
F-SecureTrojan.TR/Agent.xgsej
VIPREGen:Variant.Lazy.293059
TrendMicroTROJ_GEN.R002C0PAA24
SophosMal/Generic-S
VaristW32/FakeQB.A.gen!Eldorado
AviraTR/Agent.xgsej
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Lazy.D478C3
ZoneAlarmTrojan.Win32.Agent.xatneu
GDataGen:Variant.Lazy.293059
GoogleDetected
AhnLab-V3Trojan/Win.MSILKrypt.R555605
ALYacGen:Variant.Lazy.293059
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PAA24
RisingTrojan.Agent!8.B1E (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.199273122.susgen
FortinetPossibleThreat
AVGWin32:BackdoorX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Lazy.293059?

Lazy.293059 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment