Malware

What is “Lazy.359498”?

Malware Removal

The Lazy.359498 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.359498 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.359498?


File Info:

name: B9273DE7B636CE05E1C4.mlw
path: /opt/CAPEv2/storage/binaries/84a8b1c017887dfd2b46e47e88bb9deead6cf56249ad0350cc97e7cb733b27bc
crc32: 3522FB16
md5: b9273de7b636ce05e1c40a0fec75e12e
sha1: ac4479b7bd6104196311c6508b1311bd2dabb463
sha256: 84a8b1c017887dfd2b46e47e88bb9deead6cf56249ad0350cc97e7cb733b27bc
sha512: 02296decb13ec80f5d67747b9a8ec6f4818d3463c11c00b92faea587c9a340222488a93cd8da1519ba423d7ce9ef7413d2f4997ac0cfc0aada6187912d79552c
ssdeep: 196608:ryTa0PQi+Oj9Ue1CWbIjBmQZMaEX+dYcgJcy:01Qi99BgW8j4aM1udvgJc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118660235B2E1E157D4A200F31241AEA9436C3F345836098F7FA85E2C9EB99E1DF1A717
sha3_384: a0ccc3ad9f0eda6eadd00db7b34d5276aaef0c326df5d332a03cf6190c4520a298855f7cea2864849c88186eb62297f5
ep_bytes: e90dc10400b5ee3a96327277805f5456
timestamp: 2020-10-12 06:15:34

Version Info:

CompanyName: Wind Up Ruler
FileDescription: Bolster objective come up
FileVersion: 795.331.34.744
InternalName: fool_around_haze_twitch.exe
OriginalFilename: fool_around_haze_twitch.exe
ProductName: Fool Around Haze Twitch
ProductVersion: 795.331.34.744
Translation: 0x0409 0x04b0

Lazy.359498 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.359498
FireEyeGeneric.mg.b9273de7b636ce05
ALYacGen:Variant.Lazy.359498
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDropper.Agent.Win32.547826
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 005a83921 )
AlibabaAdWare:Win32/Neoreklami.9abb46c7
K7GWAdware ( 005a83921 )
ArcabitTrojan.Lazy.D57C4A
BitDefenderThetaGen:NN.ZexaE.36318.@30@a44uzChi
CyrenW32/ABRisk.IJFP-8356
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Adware.Neoreklami.MY
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Dropper.Win32.Agent.teyhdd
BitDefenderGen:Variant.Lazy.359498
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10bf089b
EmsisoftGen:Variant.Lazy.359498 (B)
F-SecureTrojan.TR/Crypt.EPACK.Gen2
VIPREGen:Variant.Lazy.359498
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
Trapminemalicious.moderate.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
AviraTR/Crypt.EPACK.Gen2
Antiy-AVLGrayWare[AdWare]/Win32.Neoreklami
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmTrojan-Dropper.Win32.Agent.teyhdd
GDataGen:Variant.Lazy.359498
GoogleDetected
AhnLab-V3Adware/Win.Generic.R591507
McAfeePUP-XWF-OL
MAXmalware (ai score=84)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CGF23
RisingDropper.Agent!8.2F (TFE:4:uzFkqPZjLiO)
FortinetRiskware/Neoreklami
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Lazy.359498?

Lazy.359498 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment