Malware

What is “Lazy.259312”?

Malware Removal

The Lazy.259312 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.259312 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.259312?


File Info:

name: 97310E5C0081015BE588.mlw
path: /opt/CAPEv2/storage/binaries/61c0363a8d8895ef8089e3b2c687a0f5d7948e3f105b78a15fb43d584a9b776e
crc32: AA37BF28
md5: 97310e5c0081015be5885008bffb3983
sha1: b8520449119273a17af91d857f6cf07455cdfea6
sha256: 61c0363a8d8895ef8089e3b2c687a0f5d7948e3f105b78a15fb43d584a9b776e
sha512: a4454b35d114255dc381720de502cc58a70f7fc0ae6f4fc238428467fa21229c9ed8d3803c8ececfdc213e91686ef0d408a4f8a79031caf539cfe2b6a6f3feac
ssdeep: 12288:UKIwE4E+zdHH/M7stqNFmxP2Bi0Ws91pS5/8cyoSj6TNe7+n7oEIpoje7ecGriI+:UELJHH/MXjmpHR8cyou61aeKeHu
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T17B25BF1BB6A910FDD06DC179CB469132AA71B8460F60BAEF0291D26D3E776E05F3D720
sha3_384: f76b85dd8ff8a890ad2779ca2a1626b3a37273013b6cd12c320710c7b36d8af35983cfb5e5b0cf2f031c490f6554d6b0
ep_bytes: e848feffffc82000004c897c24f84883
timestamp: 2020-02-29 02:15:54

Version Info:

CompanyName: Google LLC
FileDescription: Google Chrome
FileVersion: 80.0.3987.132
InternalName: notification_helper_exe
LegalCopyright: Copyright 2019 Google LLC. All rights reserved.
OriginalFilename: notification_helper.exe
ProductName: Google Chrome
ProductVersion: 80.0.3987.132
CompanyShortName: Google
ProductShortName: Chrome
LastChange: fcea73228632975e052eb90fcf6cd1752d3b42b4-refs/branch-heads/3987@#974
Official Build: 1
Translation: 0x0409 0x04b0

Lazy.259312 also known as:

DrWebWin32.HLLP.Azov.2
MicroWorld-eScanGen:Variant.Lazy.259312
FireEyeGen:Variant.Lazy.259312
ALYacGen:Variant.Lazy.259312
K7AntiVirusTrojan ( 0059a88d1 )
K7GWTrojan ( 0059a88d1 )
CyrenW64/Ipamor.A
SymantecML.Attribute.HighConfidence
ESET-NOD32Win64/Filecoder.GG
BitDefenderGen:Variant.Lazy.259312
Ad-AwareGen:Variant.Lazy.259312
EmsisoftGen:Variant.Lazy.259312 (B)
VIPREGen:Variant.Lazy.259312
GDataGen:Variant.Lazy.259312
JiangminTrojan.Blocker.urx
GoogleDetected
Antiy-AVLTrojan/Generic.ASBOL.C73A
ArcabitTrojan.Lazy.D3F4F0
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
MAXmalware (ai score=88)
MalwarebytesMalware.AI.1053266483
RisingRansom.Agent!8.6B7 (TFE:2:U9tOTBNOHOO)
FortinetW64/Filecoder.GG!tr
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Lazy.259312?

Lazy.259312 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment