Malware

Lazy.265772 information

Malware Removal

The Lazy.265772 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.265772 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine Lazy.265772?


File Info:

name: FE6F00D5DB8AF1611738.mlw
path: /opt/CAPEv2/storage/binaries/1d91d5b650fa0ba8ae8d0ee88f38c67e741dc497aa10aa20d413bb9fd1bf0d87
crc32: 72BD8A74
md5: fe6f00d5db8af1611738298cb5168d25
sha1: d23b4ecaffdea933afcf3005a5e0dea5b66ce06d
sha256: 1d91d5b650fa0ba8ae8d0ee88f38c67e741dc497aa10aa20d413bb9fd1bf0d87
sha512: db1dfcb22330a2828a16e7bbdf2d2666fdefc041ec060544ee27d5520b16e02b52287767527b38f05996a4c59c8a46544c56afabc1a1619a6c6be82f914766b0
ssdeep: 12288:XrsVcemuXB40O2WDzRczRX3P+EiyRDdWomJRtGV7wXc+uEhZbHxMJCbRjn:DemuR40O2WtEiSD4omJc0MIHxMEt
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12FF4AF0138C1C432DE733836B969D771996DA8301B2E1EEBE38716799F605E27931D3A
sha3_384: a7e973e40d043a0a7e29f47549ebc692d345002ebbe998a92f6bb3f09f65974f84462b38965314e34d0ab3aa697b35dc
ep_bytes: e8500b0000e929feffff8b4df464890d
timestamp: 2022-11-18 09:29:36

Version Info:

0: [No Data]

Lazy.265772 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Lazy.265772
FireEyeGeneric.mg.fe6f00d5db8af161
CyrenW32/Kryptik.HUC.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HREN
KasperskyHEUR:Trojan.Win32.Strab.gen
BitDefenderGen:Variant.Lazy.265772
CynetMalicious (score: 100)
AvastWin32:PWSX-gen [Trj]
Ad-AwareGen:Variant.Lazy.265772
EmsisoftGen:Variant.Lazy.265772 (B)
DrWebTrojan.PWS.Steam.33515
Trapminemalicious.high.ml.score
APEXMalicious
GDataWin32.Trojan-Stealer.Cordimik.G843GL
AviraTR/AD.Inject.ibtja
MAXmalware (ai score=80)
ArcabitTrojan.Lazy.D40E2C
ZoneAlarmHEUR:Trojan.Win32.Strab.gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Evo-gen.C5309449
Acronissuspicious
VBA32BScope.TrojanPSW.RedLine
MalwarebytesGeneric.Trojan.Malicious.DDS
IkarusTrojan.Win32.RedlineStealer
RisingBackdoor.Agent!8.C5D (TFE:5:pUQiti8Lef)
FortinetW32/Kryptik.HREN!tr
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Lazy.265772?

Lazy.265772 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment