Malware

Should I remove “Lazy.33301”?

Malware Removal

The Lazy.33301 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.33301 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Scheduled file move on reboot detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location

How to determine Lazy.33301?


File Info:

name: 0F57089BC042DDCD0094.mlw
path: /opt/CAPEv2/storage/binaries/b96ab3616c0aa66e94b5df6f6ebb80a3c19e44a231b3382dce20460674d44766
crc32: 48A83BD7
md5: 0f57089bc042ddcd0094dc6ee25492f3
sha1: ffc0b794622d4e1ce90724e09d5e3a465f3e127e
sha256: b96ab3616c0aa66e94b5df6f6ebb80a3c19e44a231b3382dce20460674d44766
sha512: aef45614cab72e0eee90c517818a8d446a736eb043019e77651b5ecfdff33aa2f9cab84f554a5fc90515c788228e86ae9e7be6d462d83883e7c25576c86ea6d1
ssdeep: 3072:86zJrl3MISTMsfXvFnT6zJrl3MISTMsfX:XrMZMdrMZM
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A8E44A66B0C2433BC141BFB54B4448EABB62AC203961C0F733D82B4F8A7B9957E5D55E
sha3_384: c4acf2970db94209001ed30d47343994da392555a7ca98d3112a97e64a80aaee2c56f5947419ee744ac100a5e1701cd4
ep_bytes: 5589e5c605c0d140000168d07241006a
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.33301 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Copak.4!c
MicroWorld-eScanGen:Variant.Lazy.33301
FireEyeGeneric.mg.0f57089bc042ddcd
McAfeeArtemis!0F57089BC042
CylanceUnsafe
ZillyaTrojan.Injector.Win32.1282420
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00539ec91 )
AlibabaTrojan:Win32/Copak.4d34bb23
K7GWTrojan ( 00539ec91 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
Paloaltogeneric.ml
KasperskyTrojan.Win32.Copak.kxki
BitDefenderGen:Variant.Lazy.33301
AvastWin32:InjectorX-gen [Trj]
TencentWin32.Trojan.Copak.Hpf
Ad-AwareGen:Variant.Lazy.33301
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.BadFile.jz
EmsisoftGen:Variant.Lazy.33301 (B)
IkarusTrojan-Downloader.Win32.Small
GDataGen:Variant.Lazy.33301
JiangminTrojan.Copak.beyu
AviraTR/Injector.gnjwt
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASMalwS.34D7F2B
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Lazy.D8215
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C3368260
VBA32Trojan.Copak
ALYacGen:Variant.Lazy.33301
MalwarebytesMalware.AI.356705164
TrendMicro-HouseCallTROJ_GEN.R002H0CKR21
RisingTrojan.Kryptik!1.CAC5 (CLASSIC)
YandexTrojan.GenAsa!d23NLDCkX/I
FortinetW32/DZQA!tr
BitDefenderThetaGen:NN.ZexaF.34062.RyZ@aKbjppd
AVGWin32:InjectorX-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Lazy.33301?

Lazy.33301 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment