Ransom

How to remove “Ransom.Lazy.112”?

Malware Removal

The Ransom.Lazy.112 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Lazy.112 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Ransom.Lazy.112?


File Info:

name: 1E820F474F751BAB6278.mlw
path: /opt/CAPEv2/storage/binaries/c3127d24c73dc4cb0be35fd5021bd39667d787fc9150faabe9147ba31b8e3785
crc32: 9A167EA0
md5: 1e820f474f751bab6278874690e5a9a5
sha1: 70d6138bfa66d39b383494ad547e7229ae179783
sha256: c3127d24c73dc4cb0be35fd5021bd39667d787fc9150faabe9147ba31b8e3785
sha512: 3ec5579368c3d73bf75774ee4f65734ffbe56ea7f23df725456d01ab45127bcb21fd90610bd2ab4277ba786c29b8e8173c85efa199a4b20ef37356d099335c34
ssdeep: 98304:DmjmAmjm7mjmAmjmdmjm7mjm7mjmAmjm7mjmAmjm7mjmAmjm7mjmAmjm7mjmAmjM:DmjmAmjm7mjmAmjmdmjm7mjm7mjmAmjE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14C26A516F750941AF542C0B53929E2BBB91A2D721681EC03FB866F5838B46D7F4F4B0B
sha3_384: 717613540c16a2417603742962b1f56bea30717718f0546f6ffa9ec0256c907728d701728f8025c6e634a5140bd8fd85
ep_bytes: 687c224000e8f0ffffff000000000000
timestamp: 2008-11-16 03:29:47

Version Info:

0: [No Data]

Ransom.Lazy.112 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Lunam.tn6c
DrWebWin32.HLLW.Autoruner.48319
MicroWorld-eScanGen:Variant.Ransom.Lazy.112
FireEyeGeneric.mg.1e820f474f751bab
McAfeeGeneric VB.b
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0054dc901 )
AlibabaTrojan:Win32/Lunam.833d804b
K7GWTrojan ( 0054dc901 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZevbaF.34182.@pZ@aq1xs8f
VirITTrojan.Win32.VBCrypt.ELK
CyrenW32/Barys.AU.gen!Eldorado
SymantecW32.SillyFDC.BCR
ESET-NOD32a variant of Win32/Otfrem.C
TrendMicro-HouseCallTROJ_GEN.R03BC0OAT22
AvastWin32:Malware-gen
ClamAVWin.Malware.Lunam-6749633-0
KasperskyTrojan.Win32.Lunam.a
BitDefenderGen:Variant.Ransom.Lazy.112
RisingVirus.Otfrem!8.6E8 (CLOUD)
Ad-AwareGen:Variant.Ransom.Lazy.112
EmsisoftGen:Variant.Ransom.Lazy.112 (B)
BaiduWin32.Trojan.Otfrem.b
TrendMicroTROJ_GEN.R03BC0OAT22
McAfee-GW-EditionBehavesLike.Win32.Generic.rm
SophosML/PE-A + Mal/SillyFDC-K
MaxSecureTrojan.Malware.121218.susgen
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan/Generic.ASBOL.C599
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Ransom.Lazy.112
CynetMalicious (score: 100)
VBA32Trojan.Lunam
ALYacGen:Variant.Ransom.Lazy.112
MAXmalware (ai score=89)
MalwarebytesWorm.Agent.VB
APEXMalicious
TencentWin32.Virus.Otfrem.Ebhi
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.FA70!tr
AVGWin32:Malware-gen
Cybereasonmalicious.74f751

How to remove Ransom.Lazy.112?

Ransom.Lazy.112 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment