Malware

Lazy.328293 removal instruction

Malware Removal

The Lazy.328293 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.328293 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family

How to determine Lazy.328293?


File Info:

name: 84859014BB8328218324.mlw
path: /opt/CAPEv2/storage/binaries/e908d9f61b446318fe2d54d8807aad228a4e7e28c8dc6e3a8adde03b8f38dfec
crc32: 81CFF9E6
md5: 84859014bb83282183240e606b1ecb1c
sha1: 53a4cd69f6bb52a4e28c87764b764a3a2a6b3ba9
sha256: e908d9f61b446318fe2d54d8807aad228a4e7e28c8dc6e3a8adde03b8f38dfec
sha512: 6f3560305921f504eb7b37fe941eec39eb21caa5ee8f7f1daea0b0a4af76de48759781822b5f53a927b09f4a9d80e872d919cec1d7e389cadbf67ec11656fddb
ssdeep: 24576:KO0FZIfNArgoSSWfFq6B+0YGKUF8uzqDjzTotma/ZSE0E77sFZTDleyVVv:KOoO1AlzWN5UCDzyzTQmgl0EghcyVVv
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15C55E1ACA76B1163D44D12B6BC6FEAAA531BB478697BF3333164355B3B25384C097320
sha3_384: 3394295e3db917c8c062afd5acebded85a057fb578b52316fedd18baf5617ea3bbfafd09e3e7dc67e7cae8894065c2bc
ep_bytes: a1d33778f1bab3fff45bba6e7611d2d4
timestamp: 1971-05-16 00:00:00

Version Info:

0: [No Data]

Lazy.328293 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Lazy.328293
ClamAVWin.Packed.Razy-9836307-0
FireEyeGeneric.mg.84859014bb832821
SkyhighBehavesLike.Win32.Picsys.tc
McAfeeTrojan-FVOQ!84859014BB83
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Lazy.328293
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0001b3411 )
K7AntiVirusTrojan ( 0001b3411 )
ArcabitTrojan.Lazy.D50265
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGD
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Copak.gen
BitDefenderGen:Variant.Lazy.328293
NANO-AntivirusTrojan.Win32.Kryptik.fujvsz
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
SophosTroj/Agent-BFEY
F-SecureHeuristic.HEUR/AGEN.1368583
ZillyaTrojan.Generic.Win32.110376
EmsisoftGen:Variant.Lazy.328293 (B)
IkarusTrojan-Downloader.Win32.FakeAlert
JiangminTrojan.Generic.cwxfk
GoogleDetected
AviraHEUR/AGEN.1368583
Antiy-AVLTrojan/Win32.Kryptik.gify
Kingsoftmalware.kb.a.958
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Cerber.MPI!MTB
ZoneAlarmVHO:Trojan.Win32.Copak.gen
GDataWin32.Trojan.PSE.1B28NHU
VaristW32/Trojan.MJSE-7842
AhnLab-V3Packed/Win.FJB.R621039
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36680.r9Z@aS75Qdi
ALYacGen:Variant.Lazy.328293
TACHYONTrojan/W32.Selfmod
VBA32Trojan.Copak
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.9f6bb5
DeepInstinctMALICIOUS

How to remove Lazy.328293?

Lazy.328293 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment