Malware

Should I remove “Lazy.322020”?

Malware Removal

The Lazy.322020 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.322020 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Lazy.322020?


File Info:

name: BF605862FBF00C5EDD7B.mlw
path: /opt/CAPEv2/storage/binaries/6581a0a04cd75ad7f45d2910254ff5b0650c65f7c729a80222574c33aa7a5830
crc32: C4BF5E84
md5: bf605862fbf00c5edd7b95fdfd4bdae4
sha1: dc609996d55302bad9914950a76f7ef6eb59dcee
sha256: 6581a0a04cd75ad7f45d2910254ff5b0650c65f7c729a80222574c33aa7a5830
sha512: c47347c27908f950b295a77c7b0f09bed292001c5994bf95fe782dfddbee53533a25913aadfc289ca24c0b6dfbf45d5c72606fe2eeafec59a0ea77085af6448f
ssdeep: 12288:ZUkqPp7hIG0EWR+9wqas7OdNfpNo3q8p7h0G0EMR+9wqIF:ZUkqPVhI9EWs9J5OdNRNo3q8Vh09EMs6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F0E46C5B1764895BC3D1777888F5E768A03C93C53C26CB19ECB025D9BE25F88FC02A86
sha3_384: 7b78d90f2f444c129dc40d47b747aa930f536ba797020065c1c78f1d3c175c3a3af33e145b6dd09900949bdf8b9e1b90
ep_bytes: ff2500204000280029007b007d005b00
timestamp: 2043-05-12 06:37:02

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: NoMoreLife Exc
FileVersion: 1.0.0.0
InternalName: NoMoreLife Exc.exe
LegalCopyright: Copyright © NoMoreLife Exc 2023
LegalTrademarks:
OriginalFilename: NoMoreLife Exc.exe
ProductName: NoMoreLife Exc
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.322020 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Gamehack.4!c
MicroWorld-eScanGen:Variant.Lazy.322020
FireEyeGen:Variant.Lazy.322020
SkyhighArtemis!Trojan
McAfeeArtemis!BF605862FBF0
Cylanceunsafe
SangforRiskware.Win32.Gamehack.V4m5
K7AntiVirusRiskware ( 00549c9f1 )
K7GWRiskware ( 00549c9f1 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Riskware.GameHack.AR
CynetMalicious (score: 100)
BitDefenderGen:Variant.Lazy.322020
AvastWin32:MalwareX-gen [Trj]
RisingHacktool.GameHack!8.59E (CLOUD)
SophosMal/Generic-S
VIPREGen:Variant.Lazy.322020
EmsisoftGen:Variant.Lazy.322020 (B)
IkarusTrojan.MSIL.Gamehack
Antiy-AVLRiskWare/MSIL.Gamehack
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitTrojan.Lazy.D4E9E4
GDataGen:Variant.Lazy.322020
GoogleDetected
AhnLab-V3Malware/Win.Generic.C4625297
VBA32Downloader.MSIL.Pabin.Heur
ALYacGen:Variant.Lazy.322020
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002H09AK24
SentinelOneStatic AI – Suspicious PE
FortinetRiskware/DllInject
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Lazy.322020?

Lazy.322020 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment