Malware

Lazy.430963 removal

Malware Removal

The Lazy.430963 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.430963 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.430963?


File Info:

name: 49DAD0A8F66D3350AD4C.mlw
path: /opt/CAPEv2/storage/binaries/4fca36666f84472f4928b6fcb304aac1f09c1e5a867ea71f2c51205f23da9bdb
crc32: 31E2C6CD
md5: 49dad0a8f66d3350ad4c45986fcb6fcd
sha1: 054959aa523a8703a191674f23c7b45f3a84decd
sha256: 4fca36666f84472f4928b6fcb304aac1f09c1e5a867ea71f2c51205f23da9bdb
sha512: 7271d2ac996f7156c871270f6d69738f9be2cf7e30090f70b6103c7f6db2ad54c6fd7845d83dc81f8f9ebfbd68a153c2f9e658a513ca17934edac2709561970e
ssdeep: 12288:1aeMMkwx6YuV8tfzVQ5zCD4VZRDGWF1m3aYhOA6eXVQ5zCD8:1ZkwPtfzVQ5zY431CaYAeXVQ5zY8
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T126E49DA9FC4F4AA0CCAB783319B3AF4091D6E64A5FFFC185D96404793D31981752C8BA
sha3_384: 71a17061cfe89ae6df4351f9f095bcac49eb56f4e5c4eec21db5229075230569a45f0519da3af012a612ce85468dc6ed
ep_bytes: 91bfb346c1d637c1c4373e50d67556ea
timestamp: 1971-05-16 00:00:00

Version Info:

0: [No Data]

Lazy.430963 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Lazy.430963
SkyhighBehavesLike.Win32.Generic.jc
McAfeeTrojan-FVOQ!49DAD0A8F66D
MalwarebytesCrypt.Trojan.MSIL.DDS
ZillyaTrojan.KryptikAGen.Win32.38400
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.a523a8
ArcabitTrojan.Lazy.D69373
BitDefenderThetaGen:NN.ZexaF.36680.P8Z@a83RoFe
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9828382-0
KasperskyVHO:Trojan.Win32.Copak.gen
BitDefenderGen:Variant.Lazy.430963
NANO-AntivirusTrojan.Win32.Kryptik.fgpukb
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Crypt.hbw
EmsisoftGen:Variant.Lazy.430963 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREGen:Variant.Lazy.430963
SophosTroj/Agent-BFEY
IkarusTrojan.Win32.Glupteba
JiangminTrojan.Generic.gfcbq
VaristW32/Trojan.NJGF-3047
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmVHO:Trojan.Win32.Copak.gen
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.C5537712
Acronissuspicious
VBA32Trojan.Khalesi
TACHYONTrojan/W32.Selfmod
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Lazy.430963?

Lazy.430963 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment