Malware

How to remove “Lazy.423828”?

Malware Removal

The Lazy.423828 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.423828 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Lazy.423828?


File Info:

name: 5D4520560816939EA47C.mlw
path: /opt/CAPEv2/storage/binaries/cd7cadd90dcfc36b5d9da19bb94d4e176b2b90cf7ad1a2003eed8c469e4b98d1
crc32: 6DC69200
md5: 5d4520560816939ea47c5454d3c27c5f
sha1: 7eb6f94725b3846c76bdf24c3fc5791812d0adab
sha256: cd7cadd90dcfc36b5d9da19bb94d4e176b2b90cf7ad1a2003eed8c469e4b98d1
sha512: a8e128749be2ba09961b8e1badd313a1d7a31cef9da7aa473438c45fdf72b5abf4fdd1749ae636a246ca85fa17402761c4cae7835e1c80c60756a198772a80a4
ssdeep: 49152:f2wcsj6ugCHFpbq4TTJbiAgE1+EZJQ6Wgp:+wj6EHFphT95m6v
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T101A5F1DA230F6187D423D77A9DCFC9798413A8FCB8E7D6683460316BF529B90489272D
sha3_384: 8497ba34abfa9f14907cabd2da072b7cd8378967edcf7f2da62e1dfdea823e2d8974cdc273c601cc312bbcfbbeba09ce
ep_bytes: f5833245a5eab6c2a00bbf532241d7e9
timestamp: 1972-09-27 00:00:00

Version Info:

0: [No Data]

Lazy.423828 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Khalesi.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen12.42976
MicroWorld-eScanGen:Variant.Lazy.423828
ClamAVWin.Packed.Razy-9785185-0
FireEyeGeneric.mg.5d4520560816939e
SkyhighBehavesLike.Win32.Generic.vc
McAfeeTrojan-FVOQ!5D4520560816
Cylanceunsafe
VIPREGen:Variant.Lazy.423828
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Glupteba.33a2a765
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.608169
BitDefenderThetaGen:NN.ZexaF.36802.d6Z@aqPQx@k
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik_AGen.BGV
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.423828
NANO-AntivirusTrojan.Win32.Kryptik.ffmtzm
AvastWin32:RATX-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
TACHYONTrojan/W32.Selfmod
EmsisoftGen:Variant.Lazy.423828 (B)
F-SecureHeuristic.HEUR/AGEN.1373234
ZillyaTrojan.Generic.Win32.109672
Trapminesuspicious.low.ml.score
SophosTroj/Agent-BFEY
IkarusTrojan.Win32.Glupteba
JiangminTrojan.Generic.cktef
AviraHEUR/AGEN.1373234
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Lazy.D67794
ZoneAlarmUDS:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.11XGYE9
VaristW32/Trojan.ULNO-1867
AhnLab-V3Trojan/Win.BG.C5400712
Acronissuspicious
VBA32Trojan.Copak
ALYacGen:Variant.Lazy.423828
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:RATX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudVirTool:Win/Obfuscate.FakeEp.DYN(dyn)

How to remove Lazy.423828?

Lazy.423828 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment