Malware

Lazy.208802 information

Malware Removal

The Lazy.208802 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.208802 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.208802?


File Info:

name: 19F975585797CE3D98B3.mlw
path: /opt/CAPEv2/storage/binaries/650e15e70a63cc17f4451dec71eb71d902b32e87af9f3a559ca3de8f219d1449
crc32: 9D2E4932
md5: 19f975585797ce3d98b3aacc196fca46
sha1: 0ba9c7c95ad236cf8d6949ba4ef2ce7a435cba56
sha256: 650e15e70a63cc17f4451dec71eb71d902b32e87af9f3a559ca3de8f219d1449
sha512: 3fdcbc9aa769a1c4f02f4c0406509bec9222e53bcbb17590ab05ca4ed925b14a92bcfaef04cc7ca142320beaae5fc6458cc79d2b2497e22a1e2e2d1a574fd2a4
ssdeep: 6144:g5E48VXboOj0H3UjQKTSAQCRP/ncMzJunvF092VvAeMv5TWA:g5MVMO+EUK2AnPfcM1QFYMvAeMWA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AC7412A3F726CF18FC34843955AD8EBAD9DDFE7508F28920A849587264C47DAB4703B4
sha3_384: f7754eb42bb4d9c30aaabaa1265e64a904f120c8a013bfcaf5ccd7569f182c1e994f1fac76d6222ace39d6881ae0995d
ep_bytes: 5589e581ecfc01000087fe56575355e8
timestamp: 1970-03-20 19:16:03

Version Info:

0: [No Data]

Lazy.208802 also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
DrWebTrojan.Fakealert.19937
MicroWorld-eScanGen:Variant.Lazy.208802
FireEyeGeneric.mg.19f975585797ce3d
CAT-QuickHealTrojan.FakeAV
McAfeeGeneric FakeAV.nn
CylanceUnsafe
ZillyaTrojan.FakeAV.Win32.38932
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0021226a1 )
K7GWTrojan ( 0021226a1 )
Cybereasonmalicious.85797c
BitDefenderThetaGen:NN.ZexaF.34682.uu0@aOss07oc
VirITFraudTool.SystemTool.A
CyrenW32/FakeAlert.JP.gen!Eldorado
SymantecTrojan.FakeAV!gen28
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.JGV
APEXMalicious
ClamAVWin.Trojan.Fakesec-895
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.208802
NANO-AntivirusTrojan.Win32.Krap.bqlxt
SUPERAntiSpywareTrojan.Agent/Gen-FakeSoft
AvastWin32:FakeSysdef-L [Trj]
Ad-AwareGen:Variant.Lazy.208802
EmsisoftGen:Variant.Lazy.208802 (B)
ComodoTrojWare.Win32.PkdKrap.AO@2mkvi8
BaiduWin32.Trojan.Kryptik.nk
VIPREGen:Variant.Lazy.208802
TrendMicroTROJ_FAKEAL.SMEP
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/FakeAV-EA
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Murlo.bgg
GoogleDetected
AviraTR/Agent.heat
Antiy-AVLTrojan/Generic.ASMalwS.3E7
MicrosoftVirTool:Win32/Obfuscator.OX
ArcabitTrojan.Lazy.D32FA2
GDataGen:Variant.Lazy.208802
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Zbot3.Gen
VBA32Trojan-Injector.13705
ALYacGen:Variant.Lazy.208802
MAXmalware (ai score=82)
MalwarebytesMalware.AI.1388001843
TrendMicro-HouseCallTROJ_FAKEAL.SMEP
RisingTrojan.Toga!8.136D (TFE:4:GHBkZqQPAi)
YandexTrojan.Winwebsec.Gen!Pac.23
IkarusPacker.Win32.Krap
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Krap.AON!tr
AVGWin32:FakeSysdef-L [Trj]
PandaAdware/WindowsRecovery
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Lazy.208802?

Lazy.208802 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment