Malware

Lazy.414556 malicious file

Malware Removal

The Lazy.414556 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.414556 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.414556?


File Info:

name: 308E1E077271D8E69C27.mlw
path: /opt/CAPEv2/storage/binaries/504b9a1dd17c49d9cfa4a4f9bc6fea064fae6595eca67d2aeab3679d3a6f56bb
crc32: 4ED80AA0
md5: 308e1e077271d8e69c2779607135ee4f
sha1: 019dba7c359f738301ba16b579d4dd2b7f8f0b7f
sha256: 504b9a1dd17c49d9cfa4a4f9bc6fea064fae6595eca67d2aeab3679d3a6f56bb
sha512: cfba308127f5a0e1515512c0772814640c133088ca7f46b06334b6d893d253128ad9ff07acacb5854645bc6c177dd2b8898c533acaba0aeb300c03602bba82ab
ssdeep: 49152:KCpiCeW7MBts7cKVT/3tNTmusprqg9rgEw/T0DFgos:NpiCesM7s7cAbthLspr39rgVT0DFgos
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11D8523BE758D6B71E19200B3231294C7BB4D527A0366D9D26CFDC04D2A07EBC563BB89
sha3_384: 752fc3584deb8b4b0e4a982a2a94dcf2a86fb84ac6938c2e6cb6f1ebe5d0b29d0f521c05788f55deb7974773bb050cf3
ep_bytes: 60bedc5a47e24e09c081c01ef0fd9061
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Lazy.414556 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.414556
FireEyeGeneric.mg.308e1e077271d8e6
ALYacGen:Variant.Lazy.414556
MalwarebytesTrojan.MalPack.UPX
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057fe481 )
BitDefenderGen:Variant.Lazy.414556
K7GWTrojan ( 0057fe481 )
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.ECAV
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Razy.ixoxch
RisingTrojan.Kryptik!1.D12D (CLASSIC)
VIPREGen:Variant.Lazy.414556
TrendMicroPAK_Xed-10
SentinelOneStatic AI – Malicious PE
VaristW32/Copak.F.gen!Eldorado
MAXmalware (ai score=86)
Kingsoftmalware.kb.b.865
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Lazy.D6535C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.28UEQN
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R554362
BitDefenderThetaGen:NN.ZexaF.36792.RnZ@aGXXzDe
DeepInstinctMALICIOUS
VBA32Trojan.Copak
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallPAK_Xed-10
TencentTrojan.Win32.Tiggre.ka
YandexTrojan.Agent!1+xNE5nFG6A
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CRNJ!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]

How to remove Lazy.414556?

Lazy.414556 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment