Malware

Lazy.336445 information

Malware Removal

The Lazy.336445 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.336445 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.336445?


File Info:

name: 1D68B4005109D47D7740.mlw
path: /opt/CAPEv2/storage/binaries/20bc97ff188e4e8f41cd22c1df4384980e43845fa52374f9a7462c639aa91bb8
crc32: 2D73386F
md5: 1d68b4005109d47d7740b7a49edd0447
sha1: 7ba115bac24794272638e212fcc41455f7a33a83
sha256: 20bc97ff188e4e8f41cd22c1df4384980e43845fa52374f9a7462c639aa91bb8
sha512: 5f2cc059301df5799e7e1ef6a0eabd7fc528540b1fe7307274494a51f626f2aed79c8e97251663102ab2ca463bf3a30724f850f3468fc9ccee9e407503be7e8e
ssdeep: 3072:BDlapZQCjlVVPdkSFYUZsoiIf3tSZDDp0z1pipxWL2bIlkkmjQNQK9jH1f7EsqFF:baPQy9YUOoZf3MHEiTWQUTF97Vw/XcdU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13154BF2EFA921B21C161027E2606298DEF19B0FD33277AA16084511DC26775EFFF6F91
sha3_384: d67fc66c6495798a8eae1ec26b5fd711a5330a7607931ae63625a244e7420914814621b25fcdab5b7c8cea443208287e
ep_bytes: 7c5eeea42c376a2329d663b23b940b08
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.336445 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Lazy.336445
SkyhighBehavesLike.Win32.Worm.dh
ALYacGen:Variant.Lazy.336445
MalwarebytesCrypt.Trojan.MSIL.DDS
ZillyaTrojan.Kryptik.Win32.4096941
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
BitDefenderGen:Variant.Lazy.336445
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.ac2479
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GIFY
APEXMalicious
ClamAVWin.Packed.Zpack-10001780-0
KasperskyHEUR:Trojan.Win32.Copak.pef
NANO-AntivirusTrojan.Win32.Copak.jvltba
RisingTrojan.Kryptik!1.B34D (CLASSIC)
TACHYONTrojan/W32.Selfmod
SophosMal/Inject-GJ
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen20.18957
VIPREGen:Variant.Lazy.336445
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.1d68b4005109d47d
EmsisoftGen:Variant.Lazy.336445 (B)
IkarusTrojan.Win32.Glupteba
JiangminTrojan.Selfmod.aozo
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/Kryptik.CIN.gen!Eldorado
Antiy-AVLTrojan/Win32.Kryptik.GIRH
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Glupteba.MT!MTB
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Lazy.D5223D
ZoneAlarmHEUR:Trojan.Win32.Copak.pef
GDataGen:Variant.Lazy.336445
CynetMalicious (score: 100)
AhnLab-V3Packed/Win.FJB.C5394144
Acronissuspicious
McAfeeTrojan-FVOQ!1D68B4005109
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
VBA32Trojan.Khalesi
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Copak.kf
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.115582812.susgen
FortinetW32/Kryptik.GIFQ!tr
BitDefenderThetaGen:NN.ZexaF.36792.r8Z@a4kX8Mg
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Lazy.336445?

Lazy.336445 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment