Malware

Lazy.93476 (B) removal tips

Malware Removal

The Lazy.93476 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.93476 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.93476 (B)?


File Info:

name: 29CF8A7EB1B820D3073A.mlw
path: /opt/CAPEv2/storage/binaries/8871bab004d6058546b617894cc7c3febc474926685a61a5beaebb7780154b7e
crc32: 502E7D89
md5: 29cf8a7eb1b820d3073a6b8d5082774e
sha1: 825443c339e67c0d3a2eb85540d447e38a37788f
sha256: 8871bab004d6058546b617894cc7c3febc474926685a61a5beaebb7780154b7e
sha512: 81f75194357cdd7d0b1feb49eee70fd64050934edcb8ab63d4eaa799f37603372bf8b85851a0b4fb4992816c75f5fa014c9f58c7bec1ac6d8046a23b5b88e392
ssdeep: 24576:dHTpEhP1+S1HHFb6iKl5M6sEHMGTRWKICVECsKt4Y60ixe77nc95kWC:dHT4z5hal5HstB0iY77n2iWC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A36512D2658C988EC46D6EB5C683EBB509236FF09201A517A670BF8E7F33E816DC1057
sha3_384: 9e9bd65ec3a285a955631bca52aedab948f6b1d6b226ad7694114c75a89a9b502d4c2fa2ed36010da5b3cc79be12ca9d
ep_bytes: 60e8d9feffff6183ec045053b8809fb6
timestamp: 2022-01-28 20:56:48

Version Info:

FileVersion: 1.0.0.0
FileDescription: 应用程序
ProductName: 应用程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 应用程序
Translation: 0x0804 0x04b0

Lazy.93476 (B) also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.93476
FireEyeGeneric.mg.29cf8a7eb1b820d3
ALYacGen:Variant.Lazy.93476
CylanceUnsafe
SangforRiskware.Win32.Vemply.gen
K7AntiVirusTrojan ( 0058c3fd1 )
BitDefenderGen:Variant.Lazy.93476
K7GWTrojan ( 0058c3fd1 )
Cybereasonmalicious.339e67
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FPAJ
APEXMalicious
AlibabaPacked:Win32/Vemply.e2152116
Ad-AwareGen:Variant.Lazy.93476
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34212.zD3@amRMHYab
TrendMicroTROJ_GEN.R035C0WB222
EmsisoftGen:Variant.Lazy.93476 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Kryptik.spldr
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.351A908
GridinsoftRansom.Win32.Sabsik.sa
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R470554
MalwarebytesMalware.AI.513172112
TrendMicro-HouseCallTROJ_GEN.R035C0WB222
TencentWin32.Trojan.Lazy.Htwp
IkarusTrojan.Win32.Krypt
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.FPAJ!tr
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Lazy.93476 (B)?

Lazy.93476 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment