Malware

What is “Lazy.208978”?

Malware Removal

The Lazy.208978 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.208978 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Lazy.208978?


File Info:

name: 6CE812FB00692AE44266.mlw
path: /opt/CAPEv2/storage/binaries/8f7bd66f3c82bb707d73a28a5115fcef06ece2453b5055fee5966085d08afd6b
crc32: 43291FC0
md5: 6ce812fb00692ae4426607d15496eb73
sha1: 681b3f35a866cfc2a18198678548914651011099
sha256: 8f7bd66f3c82bb707d73a28a5115fcef06ece2453b5055fee5966085d08afd6b
sha512: c8c4d2555084f47959ab94f193da1d9941d1d4fd906fbd704a9e4e40a3d4be36cf4a4419958cbed9dd2364afc55188abe7dfde2e5eed7ca271f9cddf21dcb052
ssdeep: 12288:qOMXPZFziQnlw0f/qGR8Ea85iH3J48ah7vffm3rvfxZ0qfv/yvOUEWuNy1F:HMXxFzir03nR8EZort37j0qnqmjNAF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T161E423B8671C6CB1C6B301738ED21E4B950DF28FFCA5941EE4D50216E5C7A892DBB41E
sha3_384: a6199a416b6beb2477c8999bfc10fff4d73342a9f82be7ef2d5c5a5c25934709b7d635a0da15b51dea3520d978f681f0
ep_bytes: 60be00304c008dbe00e0f3ffc787ac18
timestamp: 2007-08-17 23:14:36

Version Info:

0: [No Data]

Lazy.208978 also known as:

LionicTrojan.Win32.FraudLoad.a!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Lazy.208978
FireEyeGeneric.mg.6ce812fb00692ae4
ALYacGen:Variant.Lazy.208978
CylanceUnsafe
VIPREGen:Variant.Lazy.208978
SangforTrojan.Win32.Generic.ky
K7AntiVirusTrojan ( 001e60c61 )
AlibabaTrojan:Win32/Obfuscator.54b5123d
K7GWTrojan ( 001e60c61 )
Cybereasonmalicious.b00692
CyrenW32/Backdoor.P.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Kryptik.JRT
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.208978
NANO-AntivirusTrojan.Win32.FraudLoad.haflt
AvastFileRepMalware [Trj]
TencentWin32.Trojan.Generic.Wtoa
Ad-AwareGen:Variant.Lazy.208978
EmsisoftGen:Variant.Lazy.208978 (B)
ComodoSuspicious@#2lb5wyclbtd5p
ZillyaTrojan.FakeAV.Win32.49564
TrendMicroTROJ_KRYPTK.SMH
McAfee-GW-EditionBehavesLike.Win32.ZBot.jc
Trapminemalicious.moderate.ml.score
SophosML/PE-A + Mal/FakeAV-GQ
IkarusEmail-Worm.Win32.Hlux
GDataGen:Variant.Lazy.208978
JiangminTrojanDownloader.FraudLoad.wqm
WebrootW32.Malware.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.3303
MicrosoftTrojan:Win32/Bulta!rfn
GoogleDetected
Acronissuspicious
McAfeeArtemis!6CE812FB0069
MAXmalware (ai score=100)
VBA32Malware-Cryptor.Win32.General.4
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallTROJ_KRYPTK.SMH
RisingDropper.Generic!8.35E (KTSE)
YandexTrojan.DL.FraudLoad!rjGIc0WEfNk
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/SLM39.A@mm
BitDefenderThetaGen:NN.ZexaF.34592.RmHfaS9B7lhi
AVGFileRepMalware [Trj]
PandaGeneric Malware
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Lazy.208978?

Lazy.208978 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment