Malware

Should I remove “Lazy.332951”?

Malware Removal

The Lazy.332951 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.332951 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Lazy.332951?


File Info:

name: BC0D7509E39C8C0BFB93.mlw
path: /opt/CAPEv2/storage/binaries/23c8f79336b3a87f436799cde73848e051650c64760b2519242045b787717ed5
crc32: F7E6322A
md5: bc0d7509e39c8c0bfb939895daf2b9ce
sha1: 3acbd5a035e60a1d5c176fc835beb9e6998d3b1c
sha256: 23c8f79336b3a87f436799cde73848e051650c64760b2519242045b787717ed5
sha512: dd3643556d241fa3e8cd0eab94361d23d13bd8cba8c1ce6a0f38f1c97e4158b966d2db06949e275474987669a4f4741d15098bcb4d197aeb5b723c1bc0c66fbe
ssdeep: 12288:WQdXT/pIwUFPlgrdm4Vz0Rpppppppppppppppppppppppppppppd:RX7pOV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T136B4D641ABE4DEA5FAA96775A836C4744731BC9AA83AE24D14C13C8F2F7F7C04811763
sha3_384: ea8b5d1204d40bef8e930bc60d09db8c6f0ef52885b9e8a6f2a400d5a6d616532e805f840ad91f409080ab1752c2d073
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-04-20 23:56:25

Version Info:

Translation: 0x0000 0x04b0
Comments: NVIDIA Package Launcher
CompanyName: NVIDIA Corporation
FileDescription: NVIDIA Package Launcher
FileVersion: 1.0.11.0
InternalName: Onlook_device.exe
LegalCopyright: Copyright © 2011-2021 NVIDIA Corporation
LegalTrademarks:
OriginalFilename: Onlook_device.exe
ProductName: NVIDIA Package Launcher
ProductVersion: 1.0.11.0
Assembly Version: 1.0.11.0

Lazy.332951 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Seraph.a!c
MicroWorld-eScanGen:Variant.Lazy.332951
FireEyeGen:Variant.Lazy.332951
SkyhighRDN/Generic Downloader.x
McAfeeRDN/Generic Downloader.x
MalwarebytesGeneric.Trojan.Downloader.DDS
VIPREGen:Variant.Lazy.332951
SangforDownloader.Msil.Seraph.Vf9v
K7AntiVirusTrojan-Downloader ( 005a3d821 )
AlibabaTrojanDownloader:MSIL/Seraph.b02d3250
K7GWTrojan-Downloader ( 005a3d821 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.GenusT.EGYL
SymantecMSIL.Downloader!gen7
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.PCL
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
BitDefenderGen:Variant.Lazy.332951
AvastWin32:PWSX-gen [Trj]
RisingMalware.Obfus/MSIL@AI.87 (RDM.MSIL2:vp1IAtHXesXifAc2IK+tNA)
EmsisoftGen:Variant.Lazy.332951 (B)
F-SecureTrojan.TR/Dldr.Agent.rqiha
DrWebTrojan.DownLoaderNET.604
TrendMicroTROJ_GEN.R002C0DAA24
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/Dldr.Agent.rqiha
MAXmalware (ai score=87)
Antiy-AVLTrojan[Downloader]/MSIL.Seraph
MicrosoftTrojan:Win32/Leonem
ArcabitTrojan.Lazy.D51497
ZoneAlarmHEUR:Trojan-Downloader.MSIL.Seraph.gen
GDataGen:Variant.Lazy.332951
VaristW32/MSIL_Kryptik.HPW.gen!Eldorado
AhnLab-V3Trojan/Win.MSILKrypt.R503130
ALYacGen:Variant.Lazy.332951
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0DAA24
TencentMalware.Win32.Gencirc.13b53fff
YandexTrojan.Igent.bZ4zbW.12
IkarusTrojan-Downloader.MSIL.Agent
FortinetMSIL/Agent.PCL!tr.dldr
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Lazy.332951?

Lazy.332951 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment