Malware

Lazy.354655 removal guide

Malware Removal

The Lazy.354655 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.354655 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.354655?


File Info:

name: ECC249ADDA68A043064B.mlw
path: /opt/CAPEv2/storage/binaries/ae6c6b76627a705261ddf691ef4af3ac154db04d3fb024f6bb6778a88be2380e
crc32: 57ECD7B0
md5: ecc249adda68a043064b0a06d9ed47e1
sha1: 201400d6a966a3fe9bd0d5230ae09cd393a3f10a
sha256: ae6c6b76627a705261ddf691ef4af3ac154db04d3fb024f6bb6778a88be2380e
sha512: 563e4690222f71fce614b9808dea84ce44521b8f28b2e766173f26ec25bd34d7702fd4fb1d1bded32f8c449d24b65f4f57b3b7230159f53ec5beadfe3a5284a8
ssdeep: 12288:c8z/Ar47QvPYOiao9cVbdRjVgRDujVDa/ZSZD:1z97QHTY6bdv1a/ZSZD
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19D25493DF77281A3C445F676AD0ECBA14520B8382A23D37671847B4B7AE1FD0B956634
sha3_384: 8e307c6d34882f5d6b6ef281d22b504d2ae7d34802ba7cf6f01704172ba4f6c9a22914426863aecb5fdb5205e24f9085
ep_bytes: 5589e5c605e06141000168d0824b006a
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.354655 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.GenericML.4!c
MicroWorld-eScanGen:Variant.Lazy.354655
ClamAVWin.Packed.Dridex-9860931-1
FireEyeGeneric.mg.ecc249adda68a043
McAfeePacked-FJB!ECC249ADDA68
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Lazy.354655
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Glupteba.9abd6396
K7GWTrojan ( 005a15b21 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36350.70W@aiTRApc
CyrenW32/Zusy.EM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HHBK
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderGen:Variant.Lazy.354655
NANO-AntivirusTrojan.Win32.Kryptik.jvkhwk
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
TACHYONTrojan/W32.Selfmod
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XPACK.Gen
ZillyaTrojan.Kryptik.Win32.2893180
McAfee-GW-EditionBehavesLike.Win32.Dropper.dm
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Lazy.354655 (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.1B28NHU
JiangminTrojan.Copak.cooc
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Kryptik
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Lazy.D5695F
ViRobotTrojan.Win.Z.Kryptik.966656.AD
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
MicrosoftTrojan:Win32/Glupteba.MT!MTB
GoogleDetected
AhnLab-V3Packed/Win.Generic.R564773
Acronissuspicious
ALYacGen:Variant.Lazy.354655
MAXmalware (ai score=89)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DHF23
RisingTrojan.Kryptik!1.CAC5 (CLASSIC)
IkarusTrojan.Win32.Injector
FortinetW32/Zusa.KS!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.dda68a
DeepInstinctMALICIOUS

How to remove Lazy.354655?

Lazy.354655 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment