Malware

Lazy.414556 removal

Malware Removal

The Lazy.414556 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.414556 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Creates a copy of itself
  • Deletes executed files from disk
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.414556?


File Info:

name: B9C8C275BA6FDB47DE05.mlw
path: /opt/CAPEv2/storage/binaries/37971c27323de63034fb8406d60ed99b0c6b7546528f912d3fac304fdce2b86e
crc32: 36B954DA
md5: b9c8c275ba6fdb47de05ea1aa4e99a35
sha1: c9dcc5609115c0cfd1a56fddfab36b77b67b9713
sha256: 37971c27323de63034fb8406d60ed99b0c6b7546528f912d3fac304fdce2b86e
sha512: f5bc4df0c8405e7b5931b39884fa67718dee1e1c58caa2504fda63aba632f2d11f48e480ded0ef175bb45d9e4f721db34d0dea4f1cbf66b61ac47e8d6672bbcf
ssdeep: 24576:ZOPh8EArSkGDZRTjQrnQkcbNuQt9sQWkynb6Dr/oFKHwODkXWkFfz:Zvg7cQkcxuBF7GjIFfz
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18A2523B49C69B64BDE31177A72FD07E5A28A878212219C4219C96EB0C5333A5DF32D37
sha3_384: df6febc5940fdc5eafb4517349ebf2be77e502f3cf0f170ac56bc59fa8a57fa1eedc266fc5a1799d055f309cd27c200b
ep_bytes: 60be7173963781ee1df6782f81c64cac
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.414556 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Injuke.16!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.414556
FireEyeGeneric.mg.b9c8c275ba6fdb47
SkyhighBehavesLike.Win32.Generic.dm
ALYacGen:Variant.Lazy.414556
MalwarebytesTrojan.MalPack.Generic
ZillyaTrojan.Injector.Win32.1049201
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057984e1 )
BitDefenderGen:Variant.Lazy.414556
K7GWTrojan ( 0057984e1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.EBQH
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Injuke.37778d2b
NANO-AntivirusTrojan.Win32.Razy.ixcetj
RisingTrojan.Kryptik!1.D238 (CLASSIC)
SophosTroj/Agent-BGQS
F-SecureHeuristic.HEUR/AGEN.1368703
DrWebTrojan.Packed2.43250
VIPREGen:Variant.Lazy.414556
TrendMicroPAK_Xed-10
EmsisoftGen:Variant.Lazy.414556 (B)
IkarusTrojan.Win32.Injector
VaristW32/Kryptik.DND.gen!Eldorado
AviraHEUR/AGEN.1368703
Antiy-AVLGrayWare/Win32.Kryptik.ffp
Kingsoftmalware.kb.b.812
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Lazy.D6535C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Lazy.414556
GoogleDetected
AhnLab-V3Win32/Viking.suspicious
McAfeeGenericRXAA-FA!B9C8C275BA6F
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallPAK_Xed-10
TencentTrojan.Win32.Injector.wc
YandexTrojan.Injuke!s79kM1Z3U6Q
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.BGQS!tr
BitDefenderThetaGen:NN.ZexaF.36792.7mZ@au7DkUl
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.09115c
AvastWin32:Evo-gen [Trj]

How to remove Lazy.414556?

Lazy.414556 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment