Malware

Should I remove “Lazy.67373”?

Malware Removal

The Lazy.67373 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.67373 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the RedLine malware family
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Lazy.67373?


File Info:

name: DBD233B75678781F8BBA.mlw
path: /opt/CAPEv2/storage/binaries/b355bf0c7ccbf37dd9fe2c000115752be747be273be6b444563f5b8bd0e07277
crc32: B2D584F5
md5: dbd233b75678781f8bbadca15c6c591d
sha1: a0bebada502e8a014843c25c055c1f0ecbb5ed75
sha256: b355bf0c7ccbf37dd9fe2c000115752be747be273be6b444563f5b8bd0e07277
sha512: 5217694365d2d6462e5e1d82c95e121f82e471ae2a78aac38fb0ed22a02bfa6e70128c11128153be97d9b8296898b55724df86be57bb4beaed9fed1aa087c6b2
ssdeep: 1536:rWZ7mKhhCdGHmUnB8fdf4uaytdwKcqdT+neeHlUGbZAK9mvjwYbnUf9y00d7pppL:rWZqK7CcHmG8f9H7t/5BUnpWF8Yjl
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A604295073D89349E5FD0E316971943553F3BD532002931EAACA36EE6FB3B41A523AB2
sha3_384: 46eeda5f3ef1ffcb59de2fc7e978639db7167ea13433e4da5d5944906b217a024aff1df7d28a581bea11ec3fe9dc1686
ep_bytes: ff25002040006100750074006f006600
timestamp: 2084-04-04 05:46:55

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Soleuses.exe
LegalCopyright:
OriginalFilename: Soleuses.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Lazy.67373 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.67373
ALYacGen:Variant.Lazy.67373
CylanceUnsafe
CyrenW32/MSIL_Agent.CIU.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.DFY
APEXMalicious
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderGen:Variant.Lazy.67373
AvastWin32:PWSX-gen [Trj]
Ad-AwareGen:Variant.Lazy.67373
EmsisoftTrojan-Spy.Agent (A)
DrWebTrojan.Siggen16.711
McAfee-GW-EditionGenericRXQA-AF!DBD233B75678
FireEyeGeneric.mg.dbd233b75678781f
IkarusTrojan.MSIL.Spy
GDataGen:Variant.Lazy.67373
ArcabitTrojan.Lazy.D1072D
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXQA-AF!DBD233B75678
MAXmalware (ai score=80)
MalwarebytesSpyware.PasswordStealer.MSIL
RisingStealer.RedLine!1.DA64 (CLASSIC)
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/Agent.DFY!tr
BitDefenderThetaGen:NN.ZemsilF.34062.km0@aisTdgm
AVGWin32:PWSX-gen [Trj]
MaxSecureTrojan.Malware.300983.susgen

How to remove Lazy.67373?

Lazy.67373 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment