Malware

How to remove “Lazy.328293”?

Malware Removal

The Lazy.328293 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.328293 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Lazy.328293?


File Info:

name: 4126165ADB09EE926715.mlw
path: /opt/CAPEv2/storage/binaries/69895107e81a0ffb729bffc1d145686dc516c3c46c374a83da06c4e523e5e2d4
crc32: E1CE8CD3
md5: 4126165adb09ee92671539fcbfdbe807
sha1: a5d0a6ebb574cfbf1a607a60051859e48802c7e3
sha256: 69895107e81a0ffb729bffc1d145686dc516c3c46c374a83da06c4e523e5e2d4
sha512: bb9f001e1cd520651396bd7eb360a8ab4f9c9b4d68dbc237e5015ffb2607cefebe191c5bb2b4f8aaa5e36ec2c85cadc417426fed4246100a6249c96d08427b30
ssdeep: 24576:gG6OHV1xqOURbHODMINhuqC9nyqZ5na/ZSC77Jh7:36WV1lURbuDM6huqwnyqDngl77
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13425CF6F19A71E83F04A4AF76F6EC95688126E387293C73B74D176DABC613814353238
sha3_384: 9be0168f6620948864c8ab6a395130af0d668a1d1f532131ff6d280eec3190fb7ae807e4e7c97d42780b48f4f49480a7
ep_bytes: 676cbc0f3705388832e43119b0ae59a3
timestamp: 1971-05-16 00:00:00

Version Info:

0: [No Data]

Lazy.328293 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Selfmod.4!c
tehtrisGeneric.Malware
DrWebTrojan.Siggen12.42976
MicroWorld-eScanGen:Variant.Lazy.328293
ClamAVWin.Packed.Razy-9836307-0
FireEyeGeneric.mg.4126165adb09ee92
SkyhighBehavesLike.Win32.Picsys.dc
McAfeeTrojan-FVOQ!4126165ADB09
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Lazy.328293
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
BitDefenderGen:Variant.Lazy.328293
K7GWTrojan ( 005a15b21 )
Cybereasonmalicious.bb574c
BitDefenderThetaGen:NN.ZexaF.36680.78Z@aGR3Qvf
VirITTrojan.Win32.Dnldr38.BVCU
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGD
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.aqmnu
AlibabaTrojan:Win32/Cerber.993cd831
NANO-AntivirusTrojan.Win32.Selfmod.idvhsb
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SophosTroj/Agent-BFEY
F-SecureHeuristic.HEUR/AGEN.1369103
TrendMicroTROJ_GEN.R002C0DLL23
EmsisoftGen:Variant.Lazy.328293 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1B28NHU
JiangminTrojan.Selfmod.avoo
GoogleDetected
AviraHEUR/AGEN.1369103
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Kryptik.gify
Kingsoftmalware.kb.a.961
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Lazy.D50265
ZoneAlarmTrojan.Win32.Copak.aqmnu
MicrosoftTrojan:Win32/Cerber.MPI!MTB
VaristW32/Trojan.MJSE-7842
AhnLab-V3Packed/Win.FJB.R621241
Acronissuspicious
VBA32Trojan.Copak
ALYacGen:Variant.Lazy.328293
TACHYONTrojan/W32.Selfmod
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DLL23
TencentTrojan.Win32.Selfmod.ka
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Lazy.328293?

Lazy.328293 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment