Malware

About “Lazy.77001” infection

Malware Removal

The Lazy.77001 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.77001 virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Binary compilation timestomping detected

How to determine Lazy.77001?


File Info:

name: C21BC6E3D6DB208D08C1.mlw
path: /opt/CAPEv2/storage/binaries/33ec66bf519085763bfdc644410f2a030bf140ccef5e9f6babcef5efc9613235
crc32: 8232F797
md5: c21bc6e3d6db208d08c1b2861db6db86
sha1: 5fa22df1e1d3eef7c46cbfb20425e3d4a5a22383
sha256: 33ec66bf519085763bfdc644410f2a030bf140ccef5e9f6babcef5efc9613235
sha512: 765184e8aa7af86f76dcef90d504cabb007d8c406e57fa2c3bd71643c0597bc64a93b09adbf4c53b7f124bd69c69038b937068dfd27f042b32f295b8cf25cbeb
ssdeep: 12288:IWixLBYoAqb7wtc5m2L+1BkVL3h6psry2eeCA5gr:IWg9lb7w4NcqB3h6ps22I
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5D4B6B69A574503E12035B1487187A2EFE96348A273B20DF7FBBD0BFE0E36545489D2
sha3_384: c81d2804adac83040688bbcdca148b8f15a27dcc1834fb20c4d2b3c7434bb68c17e79b2b79bea4e9528e80343f9cbb38
ep_bytes: ff250020400000000000000000000000
timestamp: 2085-07-08 15:33:14

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: CraresBrandish.exe
LegalCopyright:
OriginalFilename: CraresBrandish.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Lazy.77001 also known as:

LionicTrojan.MSIL.Stealer.l!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.77001
FireEyeGeneric.mg.c21bc6e3d6db208d
McAfeeArtemis!C21BC6E3D6DB
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058b8db1 )
AlibabaTrojanSpy:MSIL/Stealer.eed83158
Cybereasonmalicious.1e1d3e
BitDefenderThetaGen:NN.ZemsilF.34062.Lm1@aydWCf
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenCBL.BIV
APEXMalicious
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderGen:Variant.Lazy.77001
AvastWin32:DangerousSig [Trj]
EmsisoftGen:Variant.Lazy.77001 (B)
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.Win32.Generic
GDataGen:Variant.Lazy.77001
eGambitUnsafe.AI_Score_99%
AviraTR/Spy.Stealer.lnvbd
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4136455
MAXmalware (ai score=89)
MalwarebytesSpyware.PasswordStealer
TrendMicro-HouseCallTROJ_GEN.R002H09L721
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat
AVGWin32:DangerousSig [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Lazy.77001?

Lazy.77001 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment