Malware

Lazy.414556 removal instruction

Malware Removal

The Lazy.414556 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.414556 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.414556?


File Info:

name: 3291F86D8678EC4D789A.mlw
path: /opt/CAPEv2/storage/binaries/9d16e397362ded66afd4f64c2f6730f692a39c8d0cae9d5bac78d7c98fe7f2bb
crc32: 1264CD47
md5: 3291f86d8678ec4d789acb1e7b49d47e
sha1: abf46499c21e85567c59db8a6c9771671c627fa4
sha256: 9d16e397362ded66afd4f64c2f6730f692a39c8d0cae9d5bac78d7c98fe7f2bb
sha512: 75d8f39315109eac2660e9b82a013f70d7c513ca82fea174b81c6b1ba86d0ff729ca227d6c0116fd8685793e934cc63bf1a09ca57611e52ae964d6695671c7b4
ssdeep: 3072:Wfa56fYlrKiibvTuPL5zy9xQWQymQQ2tncl9mPSsdCv0hkUmpwr2:f9rEuPJydQyhlcidCv0h52
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D5D3F16EF35C4772CBE107F2721A4CC2B60E66323226A5A1744D891D6334F746B7A7C6
sha3_384: aca7865fde09f2acef2b83706d91cda2a0bcceecdc10c2fc2ac15a3b6fa27ac624b9ce18f98a567756e2950658c986fc
ep_bytes: ba000000005721dbbbc01ae6fd405e01
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Lazy.414556 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.414556
FireEyeGeneric.mg.3291f86d8678ec4d
SkyhighBehavesLike.Win32.Generic.ch
MalwarebytesTrojan.MalPack.Generic
VIPREGen:Variant.Lazy.414556
SangforSuspicious.Win32.Save.a
BitDefenderGen:Variant.Lazy.414556
BitDefenderThetaGen:NN.ZexaF.36792.imY@aC@Cabb
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/GenKryptik.FGBK
APEXMalicious
ClamAVWin.Malware.Padodor-10012876-0
NANO-AntivirusTrojan.Win32.Kryptik.kcport
RisingTrojan.Injector!1.C865 (CLASSIC)
SophosGeneric ML PUA (PUA)
GoogleDetected
F-SecureTrojan.TR/Injector.qrakw
ZillyaTrojan.Injector.Win32.1058200
EmsisoftGen:Variant.Lazy.414556 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/Kryptik.JCS.gen!Eldorado
AviraTR/Injector.qrakw
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Injector
Kingsoftmalware.kb.a.994
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Lazy.D6535C
GDataWin32.Trojan.PSE.855VXQ
CynetMalicious (score: 100)
ALYacGen:Variant.Lazy.414556
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/Genetic.gen
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FFP!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Lazy.414556?

Lazy.414556 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment