Malware

Lazy.249994 removal tips

Malware Removal

The Lazy.249994 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.249994 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Collects information to fingerprint the system

How to determine Lazy.249994?


File Info:

name: 3DF9765F4FF5F14FFDF4.mlw
path: /opt/CAPEv2/storage/binaries/5dd1754453cd0ef3d424d534280a407d325783780beb620882a2560dd1640d23
crc32: 2E2A76D6
md5: 3df9765f4ff5f14ffdf426bf72786f46
sha1: f7352bc73a27f5a558d27583afce6d021da258f8
sha256: 5dd1754453cd0ef3d424d534280a407d325783780beb620882a2560dd1640d23
sha512: 915f6ed23ba25974c7b10f975224dfda38463fa9fc0343e69c5b2a5bfd554861178f21b3bfa5aa22dfd1389a6ccc8171ea1e2405179e11ac4910d09207840db9
ssdeep: 3072:+m1/mS7+mI+N9khVJSXw9As+G8izV1beXdKBQzL2gM5VP:hPLI6WVJSA9Af4zVkXI5xv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10BD3BF12B780DC91F4191A34C953DEB84AB2FDA1DA6143A736D47F8F7CB63849E26312
sha3_384: 98a35a14287ca92c9ba1dfe99a89f5352819b68a4e677a8b853084b6a2b765b27f7ffc5f2a6d99792d0dff1ac45fe8ed
ep_bytes: 53515256c8800000c7458001000000e8
timestamp: 2012-05-17 11:25:33

Version Info:

0: [No Data]

Lazy.249994 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.Mods.1
MicroWorld-eScanGen:Variant.Lazy.249994
CAT-QuickHealTrojanDropper.Gepys.A
SkyhighBehavesLike.Win32.Dropper.ch
McAfeeDropper-FGD!3DF9765F4FF5
MalwarebytesTrojan.Agent.RRE
ZillyaTrojan.Kryptik.Win32.934241
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0040f4c81 )
K7GWTrojan ( 0040f4c81 )
Cybereasonmalicious.73a27f
BitDefenderThetaGen:NN.ZexaF.36738.iuX@a8xVoFd
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.BCUI
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.249994
NANO-AntivirusTrojan.Win32.Mods.bxpnla
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10b30e91
EmsisoftGen:Variant.Lazy.249994 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen7
VIPREGen:Variant.Lazy.249994
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.3df9765f4ff5f14f
SophosTroj/Gepys-A
IkarusTrojan.SuspectCRC
GDataGen:Variant.Lazy.249994
JiangminTrojan/ShipUp.ri
GoogleDetected
AviraTR/Crypt.ZPACK.Gen7
Antiy-AVLTrojan/Win32.ShipUp
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.ShipUp.CJA@4yldz1
ArcabitTrojan.Lazy.D3D08A
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanDropper:Win32/Gepys.A
VaristW32/GenTroj.BW.gen!Eldorado
AhnLab-V3Trojan/Win32.Tepfer.R68916
Acronissuspicious
ALYacGen:Variant.Lazy.249994
MAXmalware (ai score=81)
VBA32Trojan.Redirect
Cylanceunsafe
PandaTrj/Genetic.gen
RisingDropper.Gepys!8.15D (TFE:3:9tM9SCIQfdN)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/Kryptik.BDUE!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Lazy.249994?

Lazy.249994 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment