Malware

Lazy.430963 removal guide

Malware Removal

The Lazy.430963 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.430963 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.430963?


File Info:

name: B0A8146E7FF048D9CAE1.mlw
path: /opt/CAPEv2/storage/binaries/ae2ca74981c3e70d428ddbffe09182796956f493c8ad530e76f758a5b7008921
crc32: 78783574
md5: b0a8146e7ff048d9cae12d27516083a9
sha1: 61ad72c1387b843537b5ed152f9e32ad7763fd25
sha256: ae2ca74981c3e70d428ddbffe09182796956f493c8ad530e76f758a5b7008921
sha512: 8ae0d891f6864359920a762c658995bf1137535f863107a11d967cf1cdf8ed5eaaba91306fb9e068601fd55cd3e06420a86f3ecba0131e866a4e2360622487f8
ssdeep: 12288:RC5wkiE+nRNtfzVQ5zCD4VZRDGWF1m3aYhOA6eXVQ5zCD4V4:RvtfzVQ5zY431CaYAeXVQ5zY4V4
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T173F4ADA8FD9F0E61CCEF783309B17451D5D6E68B8F6F4085ED6044683C32984B6B74AA
sha3_384: 58dcae83821554c082c59a428fead3ed470075775724e8f8a88626cd7bacb449d17859c29c1a8c217181182f13c506d1
ep_bytes: 4aaf687a1ac6ecfd1f27e56c0d658dd6
timestamp: 1971-05-16 00:00:00

Version Info:

0: [No Data]

Lazy.430963 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Lazy.430963
SkyhighBehavesLike.Win32.Generic.bc
McAfeeTrojan-FVOQ!B0A8146E7FF0
MalwarebytesCrypt.Trojan.MSIL.DDS
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.1387b8
ArcabitTrojan.Lazy.D69373
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9828382-0
KasperskyVHO:Trojan.Win32.Copak.gen
BitDefenderGen:Variant.Lazy.430963
NANO-AntivirusTrojan.Win32.Selfmod.kgcgzo
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
EmsisoftGen:Variant.Lazy.430963 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Lazy.430963
SophosTroj/Agent-BFEY
IkarusTrojan.Win32.Glupteba
JiangminTrojan.Copak.cxtx
VaristW32/Trojan.NJGF-3047
AviraTR/Dropper.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Kryptik.girh
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmVHO:Trojan.Win32.Copak.gen
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.C5539024
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36680.T8Z@a83RoFe
TACHYONTrojan/W32.Selfmod
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Crypt.hbw
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.220157213.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Lazy.430963?

Lazy.430963 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment