Malware

Lazy.68041 (B) information

Malware Removal

The Lazy.68041 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.68041 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Lazy.68041 (B)?


File Info:

name: CEFDEDD4E25DDF8B84D0.mlw
path: /opt/CAPEv2/storage/binaries/a491b7583fa40f3f8ef1c13d2c10a6b4bb4dabefe11b6ef5b160572b86474c28
crc32: A9154382
md5: cefdedd4e25ddf8b84d0514b3fd007b3
sha1: 69b195fc78b09e6139da305e3b764b858d0efb90
sha256: a491b7583fa40f3f8ef1c13d2c10a6b4bb4dabefe11b6ef5b160572b86474c28
sha512: 3a6f6e7fe943efd59a195c5b74bcbd60194e1a4446792e4edf155b32a506beb60a0881e04396f4a54373792c3e73e29baac2c8303735b50d4e280610f250e384
ssdeep: 49152:Dd7Edl1LRJdQ3mb1ZGvVkZ+3l1w+W7SC9nVQcQd:D9ExLjdQe1MvSZcmxNQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13F95224D7E20D076EB1C1BB808710F825B324EAB84C2E69E994537CF1EB2F6C456D667
sha3_384: 5789d9e61eed011e12e1ce6c8134dcfe492dbe543b76f30a2796b5e905a08c9dea5beab41cc0298d803ce3f602ae1ca0
ep_bytes: ff250020400000000000000000000000
timestamp: 2041-08-24 01:18:49

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Spirit
FileVersion: 1.0.0.0
InternalName: SpiritP.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: SpiritP.exe
ProductName: SpiritProxy
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.68041 (B) also known as:

LionicTrojan.Win32.Lazy.4!c
MicroWorld-eScanGen:Variant.Lazy.68041
FireEyeGen:Variant.Lazy.68041
McAfeeArtemis!CEFDEDD4E25D
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Lazy.68041
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.Lazy.68041
EmsisoftGen:Variant.Lazy.68041 (B)
McAfee-GW-EditionArtemis!Trojan
GDataGen:Variant.Lazy.68041
GridinsoftRansom.Win32.Sabsik.sa
ViRobotTrojan.Win32.Z.Lazy.1905664
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Lazy.68041
MAXmalware (ai score=86)
MalwarebytesTrojan.Downloader.MSIL.Generic
TrendMicro-HouseCallTROJ_GEN.R002H09L721
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Lazy.68041 (B)?

Lazy.68041 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment