Malware

Lazy.49429 malicious file

Malware Removal

The Lazy.49429 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.49429 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Lazy.49429?


File Info:

name: 46D065A368EBB6EB4476.mlw
path: /opt/CAPEv2/storage/binaries/8aecbb4d2c12e656971f3b589a6dd5159c54adf1ed4db1503afaafec34d4992b
crc32: 5FCB639E
md5: 46d065a368ebb6eb44769ffe3b0f32e1
sha1: e01facc8bcd6d03c4f72e52afe59d360a7b6b858
sha256: 8aecbb4d2c12e656971f3b589a6dd5159c54adf1ed4db1503afaafec34d4992b
sha512: ef77723e612f94e1e9b317a267527d233d37a4bde1009582cf46f3069655ce0261799cf8f88a2f80a6c46fe7ecc4d8cdcea5b2bce44c82e6fc252f8dcf6891d1
ssdeep: 98304:g5J9oYMoYoYdnZOYoco4soAgLIRfyC7egWJ+TgN/nqKzT:kJqnZOMAguhegxGqKf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12E66AF0BF397CD9DE7232F38E671535665EAE4312A7FC20FA1066A6BD8874D0CA911C4
sha3_384: 06e584d31289e23666df2b8821b20ca3c62a6a24d0745ec89e41efab500a75e56e4a34524ed66098dd1099d3f4f45d6e
ep_bytes: ff250020400000000000000000000000
timestamp: 2048-02-01 19:35:05

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Delta
FileVersion: 1.0.0.0
InternalName: Delta.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Delta.exe
ProductName: Delta
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.49429 also known as:

LionicTrojan.Multi.Generic.4!c
CynetMalicious (score: 99)
FireEyeGeneric.mg.46d065a368ebb6eb
CAT-QuickHealTrojan.Multi
McAfeeArtemis!46D065A368EB
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaPacked:MSIL/DarksProtector.d23952d3
K7GWTrojan ( 0058b7bf1 )
K7AntiVirusTrojan ( 0058b7bf1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Packed.DarksProtector.B suspicious
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Lazy.49429
MicroWorld-eScanGen:Variant.Lazy.49429
AvastWin32:MalwareX-gen [Trj]
Ad-AwareGen:Variant.Lazy.49429
SophosMal/Generic-S
TrendMicroTROJ_GEN.R03BC0WL721
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Lazy.49429 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.49429
AviraHEUR/AGEN.1145839
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Lazy.DC115
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win.TrojanX-gen.C4569039
ALYacGen:Variant.Lazy.49429
MAXmalware (ai score=84)
VBA32CIL.HeapOverride.Heur
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R03BC0WL721
IkarusPUA.Generic
FortinetPossibleThreat
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A

How to remove Lazy.49429?

Lazy.49429 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment