Malware

Lazy.25321 removal

Malware Removal

The Lazy.25321 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.25321 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Lazy.25321?


File Info:

name: 0EEB29A26971464AC32C.mlw
path: /opt/CAPEv2/storage/binaries/012e85d456040f549ce12eeacd581df36f2d87b25f340b8cae0123fa01ba33a3
crc32: 30DB7DB0
md5: 0eeb29a26971464ac32c34cee8ce7416
sha1: 80582b3367d57f81ff34135584a9fa21be2327f6
sha256: 012e85d456040f549ce12eeacd581df36f2d87b25f340b8cae0123fa01ba33a3
sha512: d800b68c112c95e49c4805a1a98ba9319621fa6ac1da6d90749cea50721cfda3ca1b3417a15a2bf3b0ee7934ac1dd76a1b095ccc5c49a35a2b447ca7af34b2a5
ssdeep: 1536:jXSw9lGJZLddqefQqs2f4iuFgXSw9lGJZLddq:jXZiJZLGe4h2iFgXZiJZLG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A893492D1B19D41AC4996F74DD51D6F933B05E60E89EDB07AF143E8E3DB6B800FA0192
sha3_384: b824eea5671bb13d045050c2b7978264a5546a43df4d48b89616de7fb73eb9090642336892bca1cacfa3a6d01d082a5b
ep_bytes: ff250020400000000000000000000000
timestamp: 2013-03-05 15:25:39

Version Info:

Translation: 0x0000 0x04b0
FileDescription: WEMC UDP Flooder
FileVersion: 1.0.0.0
InternalName: W3MC Flooder.exe
LegalCopyright: Copyright © 2013
OriginalFilename: W3MC Flooder.exe
ProductName: WEMC UDP Flooder
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.25321 also known as:

LionicTrojan.Win32.Lazy.4!c
MicroWorld-eScanGen:Variant.Lazy.25321
FireEyeGen:Variant.Lazy.25321
ALYacGen:Variant.Lazy.25321
CylanceUnsafe
ZillyaTool.Flooder.Win32.1074
SangforTrojan.MSIL.Flooder.X
K7GWHacktool ( 0058b1ff1 )
K7AntiVirusHacktool ( 0058b1ff1 )
ArcabitTrojan.Lazy.D62E9
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.Flooder.X
APEXMalicious
BitDefenderGen:Variant.Lazy.25321
NANO-AntivirusTrojan.Win32.Tomeg.datsvp
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Lazy.25321
EmsisoftGen:Variant.Lazy.25321 (B)
ComodoMalware@#1jrs4z4jqcfb0
McAfee-GW-EditionArtemis!PUP
AviraTR/Flooder.lkofd
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.34D8FC3
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Lazy.25321
McAfeeArtemis!0EEB29A26971
TrendMicro-HouseCallTROJ_GEN.R002H0CL921
TencentWin32.Trojan.Lazy.Kqd
SentinelOneStatic AI – Suspicious PE
FortinetRiskware/Flooder
AVGWin32:Malware-gen
PandaTrj/CI.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Lazy.25321?

Lazy.25321 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment