Malware

What is “Lazy.449442”?

Malware Removal

The Lazy.449442 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.449442 virus can do?

  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Lazy.449442?


File Info:

name: FD22DF5B68C81C5E64C0.mlw
path: /opt/CAPEv2/storage/binaries/2cc28362ed74c573778662f49a47353712487dd01fd8863e50fdad9080046fad
crc32: A1B94CD0
md5: fd22df5b68c81c5e64c0c4aa1fd0dd9d
sha1: dfce28c844966e695f51682d7aee79fea479cd1e
sha256: 2cc28362ed74c573778662f49a47353712487dd01fd8863e50fdad9080046fad
sha512: e735f929adcf4410e1c4ac4b58bcdcbb80c6337453ad01a1d17d0de3d2131c91385c027cfd9df28dd29279834f979356ebc5f5e32baddca1c30f5494b35ac858
ssdeep: 3072:IQGR08OnKG2scW1ATBzaJRbeCIK1EGrkqhMz5ynbbCuWefXZV+s:LXmZscW1SMFxEGrkz5y/tfXp
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13824D0C579910B61C60F02F95E44A38E2336C1F205A689597287D6FA1BF3F886BBF740
sha3_384: 3146d6caf9bacd473bfb4d6a6037b826640b5b6fd8095e32ca491945ec75f90cdeca25e1954dfd6ba35c5233370337b1
ep_bytes: 5d87edad0dee692a080f60bb1a4d0801
timestamp: 1971-05-16 00:00:00

Version Info:

0: [No Data]

Lazy.449442 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.449442
FireEyeGeneric.mg.fd22df5b68c81c5e
SkyhighBehavesLike.Win32.Generic.dc
ALYacGen:Variant.Lazy.449442
Cylanceunsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Glupteba.1ea49462
K7GWTrojan ( 005a45ef1 )
K7AntiVirusTrojan ( 005a45ef1 )
ArcabitTrojan.Lazy.D6DBA2
BitDefenderThetaGen:NN.ZexaF.36608.n8W@a83RoFe
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Ceeinject-9812193-0
KasperskyVHO:Trojan.Win32.Copak.gen
BitDefenderGen:Variant.Lazy.449442
NANO-AntivirusTrojan.Win32.Kryptik.fheuvb
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Crypt.hbw
TACHYONTrojan/W32.Selfmod
SophosMal/Inject-GJ
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.PackedENT.147
VIPREGen:Variant.Lazy.449442
TrendMicroTROJ_GEN.R002C0DLR23
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Lazy.449442 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cpakb
VaristW32/Trojan.NJGF-3047
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ViRobotTrojan.Win.Z.Lazy.214016.XY
ZoneAlarmVHO:Trojan.Win32.Copak.gen
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.C5539024
McAfeeTrojan-FVOQ!FD22DF5B68C8
MAXmalware (ai score=86)
VBA32Trojan.Khalesi
MalwarebytesCrypt.Trojan.MSIL.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DLR23
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
IkarusTrojan.Win32.Glupteba
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.844966
DeepInstinctMALICIOUS

How to remove Lazy.449442?

Lazy.449442 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment