Trojan

Trojan:Win32/Lazy.ASBD!MTB removal guide

Malware Removal

The Trojan:Win32/Lazy.ASBD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Lazy.ASBD!MTB virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Trojan:Win32/Lazy.ASBD!MTB?


File Info:

name: F3E48947D722C0E8F962.mlw
path: /opt/CAPEv2/storage/binaries/ba63125d363bc26af9e81388a03e8a3b9c14ce7e97776c79ac33c20270dc687a
crc32: DC4BC130
md5: f3e48947d722c0e8f962427cd2ab195f
sha1: 9cdde4ad7896ef7740eb593c9af862352e6d972a
sha256: ba63125d363bc26af9e81388a03e8a3b9c14ce7e97776c79ac33c20270dc687a
sha512: db927029d454c014f1c060ec27c93d2e471e281244858f7ab6231da275c0a14125664ad7eb1f533b4f3d1a5b811a07fc990fe9e5a96a3014520738a04d08d82e
ssdeep: 384:v/4LNJY74JwOllSBQmrb0i5PrmqHIKpa54b5f0iwssS:v/qSamrxDmqoKM4Z0iwu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E3D2C623BBA28572E69347312CF6C7A459637C281F038B4B7554333D2C32E92AD6975B
sha3_384: 5f33e661785ea2e6a916110da6fb24869164198c12ec8df14b3781a5483fdcb1e163aa1f2fc88044137d9de56ab1eb0b
ep_bytes: 68e4144000e8f0ffffff000000000000
timestamp: 2010-12-28 08:42:54

Version Info:

Translation: 0x0804 0x04b0
CompanyName:
ProductName: go
FileVersion: 1.00.0250
ProductVersion: 1.00.0250
InternalName: 66
OriginalFilename: 66.exe

Trojan:Win32/Lazy.ASBD!MTB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VB.4!c
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.VBCrypt.MF.6535
SkyhighDownloader-CLU
ALYacGen:Variant.Lazy.273647
MalwarebytesMalware.AI.1295461746
VIPREGen:Variant.Lazy.273647
SangforSuspicious.Win32.Save.vb
K7AntiVirusRiskware ( 0015e4f11 )
K7GWRiskware ( 0015e4f11 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36792.bm1@am7hn2ob
VirITTrojan.Win32.Generic.AZRX
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/VB.PLO
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VB.bwtf
BitDefenderGen:Variant.Lazy.273647
NANO-AntivirusTrojan.Win32.VB.eiesof
ViRobotTrojan.Win32.A.VB.28683
MicroWorld-eScanGen:Variant.Lazy.273647
RisingDownloader.VB!1.657B (CLASSIC)
EmsisoftGen:Variant.Lazy.273647 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader6.27491
ZillyaTrojan.VB.Win32.99250
TrendMicroTROJ_GEN.R002C0DK323
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.f3e48947d722c0e8
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.273647
JiangminTrojan/VB.ckcg
WebrootW32.Rogue.Gen
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.VB
Kingsoftmalware.kb.a.994
GridinsoftTrojan.Win32.Downloader.oa!s1
ArcabitTrojan.Lazy.D42CEF
ZoneAlarmTrojan.Win32.VB.bwtf
MicrosoftTrojan:Win32/Lazy.ASBD!MTB
VaristW32/Esfury.A.gen!Eldorado
AhnLab-V3Trojan/Win32.Downloader.R19185
McAfeeDownloader-CLU
TACHYONTrojan/W32.VB-Agent.28824
DeepInstinctMALICIOUS
VBA32Trojan.VBRA.0373
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DK323
TencentMalware.Win32.Gencirc.10bf3ba8
IkarusTrojan.Win32.VB
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VB.PLO!tr
AVGWin32:Dropper-EFZ [Drp]
Cybereasonmalicious.d7896e
AvastWin32:Dropper-EFZ [Drp]

How to remove Trojan:Win32/Lazy.ASBD!MTB?

Trojan:Win32/Lazy.ASBD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment