Malware

Lazy.259334 (file analysis)

Malware Removal

The Lazy.259334 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.259334 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Bulgarian
  • Unconventionial language used in binary resources: Arabic (Yemen)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.259334?


File Info:

name: 3005CD582E7DEBF385A2.mlw
path: /opt/CAPEv2/storage/binaries/1ede6abf2584a7ed5be978aa6b00162cce728d09711efa36188846d57aa4bc81
crc32: 8E569FB9
md5: 3005cd582e7debf385a25438bca0d006
sha1: 46e7a2b02df8d0917575d9e9645c0a85dbeb908d
sha256: 1ede6abf2584a7ed5be978aa6b00162cce728d09711efa36188846d57aa4bc81
sha512: a1a6d0579fc2d36a8e17e0dc5c6ebe81f0d1e0ae3af2a89d94e697e3b4abed1a65158c19dd00bf8cf6e161e91fa9797b096861c4224c2479d750841cab58afba
ssdeep: 3072:cU399Xy+uc//korlDFtNel3kaIFH/B0CyPvO3c0gCajNCGV1KvkGejZauu50:cs99i+yrGMq0
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1D6D3395067F8060AF5F39F3099F40713A97ABC61AD36D2AE4650224E2C74B61DCB4B7B
sha3_384: 30be9f3453e82e5a26c841431d2df4de6bc8db31d2dc2e497e2eae101b373dbbe7ca9cfb900be6e728d3f80566047976
ep_bytes: e848feffffc82000004c897c24f84883
timestamp: 2018-01-30 11:45:10

Version Info:

CompanyName: Microsoft Corporation
FileDescription: disktoast
FileVersion: 10.0.15063.1475 (WinBuild.160101.0800)
InternalName: disktoast
LegalCopyright: © Microsoft Corporation. Sva prava zadržana.
OriginalFilename: disktoast.exe
ProductName: Operativni sistem Microsoft® Windows®
ProductVersion: 10.0.15063.1475
Translation: 0x241a 0x04b0

Lazy.259334 also known as:

LionicTrojan.Win32.Blocker.V!c
MicroWorld-eScanGen:Variant.Lazy.259334
FireEyeGen:Variant.Lazy.259334
ALYacGen:Variant.Lazy.259334
AlibabaTrojan:Win64/Filecoder.f67df406
CyrenW64/Ipamor.A
SymantecTrojan.Gen.MBT
ESET-NOD32Win64/Filecoder.GG
APEXMalicious
ClamAVWin.Ransomware.Expiro-9976524-0
KasperskyVHO:Trojan-Ransom.Win32.Blocker.gen
BitDefenderGen:Variant.Lazy.259334
AvastWin64:Trojan-gen
TencentWin32.Trojan.Filecoder.Zmhl
Ad-AwareGen:Variant.Lazy.259334
VIPREGen:Variant.Lazy.259334
EmsisoftGen:Variant.Lazy.259334 (B)
GDataGen:Variant.Lazy.259334
JiangminTrojan.Blocker.urx
GoogleDetected
AviraTR/FileCoder.azmjr
ArcabitTrojan.Lazy.D3F506
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R532844
MAXmalware (ai score=80)
MalwarebytesRansom.Azov
RisingRansom.Agent!8.6B7 (CLOUD)
IkarusVirus.Win64.Expiro
FortinetPossibleThreat.PALLASNET.H
AVGWin64:Trojan-gen

How to remove Lazy.259334?

Lazy.259334 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment