Malware

Lazy.208662 removal

Malware Removal

The Lazy.208662 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.208662 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Writes to the spooler folder, potential vulnerability or printer driver install
  • Collects information to fingerprint the system
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.208662?


File Info:

name: 169E8099CC70DB1F26D9.mlw
path: /opt/CAPEv2/storage/binaries/2786c937dad2564db25c0d70d48fae04078d370536e437ca8b698a831dcaf8bc
crc32: A83D0971
md5: 169e8099cc70db1f26d92bae84b999ef
sha1: 0ab61dbc6958b8588ad78b2eef24aa3a86e22277
sha256: 2786c937dad2564db25c0d70d48fae04078d370536e437ca8b698a831dcaf8bc
sha512: 2aca68bf79781542f4d70944e10b838c05f181cbaea1eb3b0298482d39f5e6fce2b6331fc8555b7ed0c3bbdd3af314e8757f4cda7a9710531e71c09d4772965d
ssdeep: 1536:2u7wR5yuRvoMCnxkiBWF6DlB7JX/VU7RYwenJ9ziOmjcn+T7wOILqmi0/DjDTfek:24q5ykvHCnG2WF6pB4VLeDz5SEtumi2j
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16793D08DBF416836E643A7F95E236691877F3C380C053E4AB2087A9F1F7A542DBA441D
sha3_384: 5a660a9cccaadc7b9afc3fab5dd0fb83068188234da19c865453e168020fe1af89ff7916877beb5465601f665347cd5b
ep_bytes: 558bec83c4f068d02d00008f056d8041
timestamp: 2010-11-21 22:20:21

Version Info:

FileVersion: 1.3.0.0
ProductVersion: 1.3
CompanyName: LAVALYS
FileDescription: Kernel Mode Driver Manager
InternalName: KmdManager
LegalCopyright: Copyright © 2006
OriginalFilename: KmdManager.exe
ProductName: Kernel Mode Driver Manager
Translation: 0x0409 0x04b0

Lazy.208662 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lavandos.m!c
DrWebTrojan.WinSpy.977
MicroWorld-eScanGen:Variant.Lazy.208662
FireEyeGeneric.mg.169e8099cc70db1f
SkyhighGenericRXVE-EG!169E8099CC70
ALYacGen:Variant.Lazy.208662
VIPREGen:Variant.Lazy.208662
SangforBackdoor.Win32.Lavandos.e
K7AntiVirusTrojan ( 001ddbf41 )
BitDefenderGen:Variant.Lazy.208662
K7GWTrojan ( 001ddbf41 )
Cybereasonmalicious.c6958b
BitDefenderThetaGen:NN.ZexaF.36792.fu1@aO1Dddmi
VirITTrojan.Win32.WinSpy.BLP
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Hodprot.AG
APEXMalicious
ClamAVWin.Trojan.Generic-6260334-0
KasperskyBackdoor.Win32.Lavandos.e
AlibabaMalware:Win32/km_2c05f.None
NANO-AntivirusTrojan.Win32.Lavandos.cwjxo
SophosMal/Generic-S
GoogleDetected
F-SecureTrojan.TR/Crypt.ZPACK.Gen
ZillyaBackdoor.Lavandos.Win32.208
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Lazy.208662 (B)
IkarusTrojan.Win32.Hodprot
WebrootW32.Malware.Gen
VaristW32/Risk.NRUJ-1445
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan[Backdoor]/Win32.Lavandos
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Parchood.A
XcitiumBackdoor@#2tfeubssabr6i
ArcabitTrojan.Lazy.D32F16
ZoneAlarmBackdoor.Win32.Lavandos.e
GDataGen:Variant.Lazy.208662
CynetMalicious (score: 100)
AhnLab-V3Dropper/Win32.Vidro.C151022
McAfeeGenericRXVE-EG!169E8099CC70
DeepInstinctMALICIOUS
VBA32Trojan.MTA.01161
Cylanceunsafe
PandaGeneric Malware
RisingBackdoor.Lavandos!8.2F9C (CLOUD)
YandexBackdoor.Lavandos!EbjZmO4dYIM
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.2639556.susgen
FortinetW32/Lavandos.E!tr.bdr
AVGWin32:FakeSysdef-U [Trj]
AvastWin32:FakeSysdef-U [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Lazy.208662?

Lazy.208662 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment