Malware

About “Ser.Lazy.1645” infection

Malware Removal

The Ser.Lazy.1645 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Lazy.1645 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Ser.Lazy.1645?


File Info:

name: AFEBCF70D638F78FAA51.mlw
path: /opt/CAPEv2/storage/binaries/72bb5af27c972a92ba6acddaf0e51fefb9875d94d47303a2b3734b7afcbeda98
crc32: 8D90FEAF
md5: afebcf70d638f78faa5190c908f1f2f8
sha1: 42d812d90d92c308e08101396b7eb5d267a650d7
sha256: 72bb5af27c972a92ba6acddaf0e51fefb9875d94d47303a2b3734b7afcbeda98
sha512: 67ec56b8a10a4626c5f909a959ad698d927ac018df99c1b848ec5eb8b574063e8573dd9f192efb15a77db5dece806f1d8f69d2154e4fe842cb68ae82316cd93a
ssdeep: 3072:igLoA17S5LQ0m50GUD7jiEbMDUipG6PYzIFBNJP3iObBkKI4f0jAyp:iVOULXmJO7jpMQiT5u6BE3jAu
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T156E38D0035C1C4B3D9661D3509A4EBB05F7DF9300F609EFB67881A7A4F746D28A36A6B
sha3_384: 012e7334d93f1650f66d211235278e602fffbe6d40f9e8429f4f4c7ac2a6534f6c7c2c10c8d239175bd37534a339cbeb
ep_bytes: e8e7030000e974feffff558bec6a00ff
timestamp: 2022-09-06 20:00:20

Version Info:

0: [No Data]

Ser.Lazy.1645 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ser.Lazy.1645
FireEyeGeneric.mg.afebcf70d638f78f
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.90d92c
CyrenW32/Dropper.6!Generic
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Trojan-Spy.Win32.Stealer.gen
BitDefenderGen:Variant.Ser.Lazy.1645
AvastPWSX-gen [Trj]
Ad-AwareGen:Variant.Ser.Lazy.1645
EmsisoftGen:Variant.Ser.Lazy.1645 (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Ser.Lazy.1645
GoogleDetected
Acronissuspicious
VBA32Malware-Cryptor.Limpopo
CylanceUnsafe
RisingTrojan.Generic@AI.96 (RDML:+5sNMwFdOguMXPJAyMuTuA)
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZexaF.34646.juW@aGn3pyh
AVGPWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Ser.Lazy.1645?

Ser.Lazy.1645 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment