Malware

Lazy.505904 removal

Malware Removal

The Lazy.505904 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.505904 virus can do?

  • Unconventionial language used in binary resources: Japanese
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Lazy.505904?


File Info:

name: 9D088E14D63FE5769ED7.mlw
path: /opt/CAPEv2/storage/binaries/70943cffb16d27bfd1fbaa50d5c198bf92f7494f1a85395189677abfc2e5a6cc
crc32: 1B610108
md5: 9d088e14d63fe5769ed7b271fb79ada1
sha1: 58e75397a13034dd3fcc3643a66ddf38b8a810a1
sha256: 70943cffb16d27bfd1fbaa50d5c198bf92f7494f1a85395189677abfc2e5a6cc
sha512: 36580a6d4c4aced4b81f76defde68255fb84f4d55e4b737a5f7098cf3a36965141f9a994967ba2f733d77383d954806ef2f5f1f52e9c99475199b16162f386d6
ssdeep: 98304:qGak1m8W6AEPqU3m98+Jh01mqZ/FjHHYe545gQhuuJ3pFqkEOEui:qGRb898+JhAmqlFjHHYT5gQh/JC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10E664C12B605C238F66D68B178A95BE6D058BD346BB332C7B1801B2D68345E77932F37
sha3_384: 18efa30a2725573f873922de05c209d94d80a0806da526bd3ecbb34d5c48542edae2588d154ada12e05ed9c09f45005f
ep_bytes: e83b170000e923feffffe8220000006a
timestamp: 2024-03-26 14:20:35

Version Info:

Comments:
CompanyName: 株式会社内田洋行ITソリューションズ
FileDescription: MICS 図面管理
FileVersion: 5, 1, 5, 2403
InternalName: 図面管理
LegalCopyright: Copyright (C) 1997-2024 UCHIDA YOKO IT SOLUTIONS CO., LTD.
LegalTrademarks:
OriginalFilename: PlnCtrl.exe
PrivateBuild:
ProductName: MICS
ProductVersion: 5, 1, 0, 0
SpecialBuild:
Translation: 0x0411 0x04b0

Lazy.505904 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Lazy.505904
FireEyeGen:Variant.Lazy.505904
BitDefenderGen:Variant.Lazy.505904
EmsisoftGen:Variant.Lazy.505904 (B)
VIPREGen:Variant.Lazy.505904
Antiy-AVLTrojan/Win32.Phonzy
ArcabitTrojan.Lazy.D7B830
GDataGen:Variant.Lazy.505904
AhnLab-V3Malware/Win.Generic.R639069
ALYacGen:Variant.Lazy.505904
MAXmalware (ai score=86)
RisingTrojan.Generic@AI.86 (RDML:dc5bIrJlvDiVLY+f05pBYw)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/PossibleThreat
Cybereasonmalicious.4d63fe
DeepInstinctMALICIOUS

How to remove Lazy.505904?

Lazy.505904 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment