Malware

How to remove “Lazy.84210”?

Malware Removal

The Lazy.84210 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.84210 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Lazy.84210?


File Info:

name: 42A0904BF62D38CD0D1A.mlw
path: /opt/CAPEv2/storage/binaries/718a1c1ed41675f3640c5d84c89a7e06dc04b7d7229ed602921ec804190debe0
crc32: DB0885E2
md5: 42a0904bf62d38cd0d1abd6787726c64
sha1: 78c76791feee7e021b7cd0e43f6c90fa2b78ae4f
sha256: 718a1c1ed41675f3640c5d84c89a7e06dc04b7d7229ed602921ec804190debe0
sha512: fac3108fae091b03fa226e98ae965e0846baae83cf158a554cce75f7164b18194ae357973ba437056a6e6ca3e4269ed4510f9a7cbcfcf1d6537aa8270ebc8373
ssdeep: 24576:d6ByEoDDt3YZ3y7YXcRrxmN3lYrnk5+PIGpkLOBc2XkmqEKP6AjVrItgcSNk0DD8:YBSDtoZT8xmN3Aek03noj45wlDT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DE758D12A7D09072E6B323309DBEB2B565BDBDB69A31851F234C6E0D1E71590BE24733
sha3_384: 3f2caf551c468a02a647fd42b2bc086c0928afa69d357fffa19069de67b3190e0a838efd43b884e8edf13be711c96768
ep_bytes: e8e43a0000e97ffeffff558bec832568
timestamp: 2018-03-15 13:15:15

Version Info:

Comments: http://www.autoitscript.com/autoit3/
CompanyName: AutoIt Team
FileDescription: Au3Info
FileVersion: 3, 3, 14, 5
InternalName: Au3Info.exe
LegalCopyright: ©1999-2018 Jonathan Bennett & AutoIt Team
OriginalFilename: Au3Info.exe
ProductName: Au3Info
ProductVersion: 3, 3, 14, 5
Translation: 0x0809 0x04b0

Lazy.84210 also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.42a0904bf62d38cd
McAfeeArtemis!42A0904BF62D
CylanceUnsafe
AlibabaVirus:Win32/Blackie.e5e789d5
Cybereasonmalicious.bf62d3
CyrenW32/Ursu.DB.gen!Eldorado
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
ClamAVWin.Malware.Bulz-9859378-0
AvastWin32:Malware-gen
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionArtemis
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.136NMWS
JiangminPacked.Krap.gvuj
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Lazy.84210
APEXMalicious
IkarusVirus.Win32.Blackie
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/Ipamor.B241!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Lazy.84210?

Lazy.84210 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment