Malware

Lazy.259321 removal tips

Malware Removal

The Lazy.259321 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.259321 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Lazy.259321?


File Info:

name: DBE67157A7579C32348D.mlw
path: /opt/CAPEv2/storage/binaries/f38405ea1eaf426794688e80e36f2bb7a80029eef1c2a73d6c34b87d88f1e211
crc32: 6F71568A
md5: dbe67157a7579c32348d7e5cbac41f59
sha1: c9b7ee8e33b9a674c961c957fb0086a7eb830de7
sha256: f38405ea1eaf426794688e80e36f2bb7a80029eef1c2a73d6c34b87d88f1e211
sha512: 39a00ee3d561e9815fe6a51b99aa6dc2a05acd6ab1e5eb7b66810142791106f04d958428b4f243e94c0e61870995defa7c7426248b78626452a251995d5c351b
ssdeep: 12288:oPYDYXiI5DkpryDs9E2E18xGQmGlqNJRuznLRjO:sqA/Dn2EWxGiq0k
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T15FD48C5AEAE840A4D036933884A79145E2717C9D0B2196CBDE75B36DDF3FAF0AC3C614
sha3_384: 5305aada6eda4234dd053c8956f708fb742117156f0e146979da1c49520c7f9f612a02c90a1fa3ff120f58afa9589f2b
ep_bytes: e848feffffc82000004c897c24f84883
timestamp: 2035-04-27 06:27:09

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Reusable UX Interaction Manager
FileVersion: 10.0.19041.1019 (WinBuild.160101.0800)
InternalName: Reusable UX Interaction Manager
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: RUXIMICS.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.19041.1019
Translation: 0x0409 0x04b0

Lazy.259321 also known as:

DrWebWin32.HLLP.Azov.2
MicroWorld-eScanGen:Variant.Lazy.259321
ALYacGen:Variant.Lazy.259321
K7AntiVirusTrojan ( 0059aa0b1 )
K7GWTrojan ( 0059aa0b1 )
CrowdStrikewin/malicious_confidence_70% (D)
CyrenW64/Ipamor.A
SymantecML.Attribute.HighConfidence
ESET-NOD32Win64/Filecoder.GG
BitDefenderGen:Variant.Lazy.259321
Ad-AwareGen:Variant.Lazy.259321
EmsisoftGen:Variant.Lazy.259321 (B)
VIPREGen:Variant.Lazy.259321
TrendMicroRansom.Win64.AZVO.SMYXCJ5
FireEyeGen:Variant.Lazy.259321
GDataGen:Variant.Lazy.259321
JiangminTrojan.Blocker.urx
GoogleDetected
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASBOL.C73A
ArcabitTrojan.Lazy.D3F4F9
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R532873
MalwarebytesRansom.Azov
RisingRansom.Agent!8.6B7 (TFE:2:U9tOTBNOHOO)
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Filecoder.GG!tr

How to remove Lazy.259321?

Lazy.259321 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment