Malware

What is “Lazy.8610”?

Malware Removal

The Lazy.8610 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Lazy.8610 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Lazy.8610?


File Info:

name: CD94330FA01C09FEA54E.mlw
path: /opt/CAPEv2/storage/binaries/d22b73d5b73563dc4ce770b82bbe738a50a77100b2672ca0d7f18b45d1c39c49
crc32: EE3DAB4F
md5: cd94330fa01c09fea54eee4d8e2db625
sha1: 266a2a42eabdde1751d324dcc1a6aa0224ff8232
sha256: d22b73d5b73563dc4ce770b82bbe738a50a77100b2672ca0d7f18b45d1c39c49
sha512: 7ad3215b227951db19a96c05c21462fe8f24edd5aa4f4d8fcaf9e190afc5acf84d21d1181f954294198b7ff21b7092b82361e3b40dddd0896705c9a5b2933b8f
ssdeep: 12288:zjWdJdhf3edFGQn3H1C7Gp1VtEbKUW1mS3LBgaqUVv11MX0qLa4P9:CDhfOR3H1C7kVXUu3LWER1O
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13DB48E21B6E18537D1231E788D2FC6AD583A7E111D25948A3BE87E8C6F3D781352F293
sha3_384: c4508ea0615d589eade627aa58499cb2ec8a1944fdf0724baa43c65fc36e387678fabc42db1984ac2dbf48af3b46f9f7
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-11-02 16:36:23

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Microsoft
FileDescription: Crack downmienphi.com
FileVersion: 1.0.0.0
InternalName: Patch.exe
LegalCopyright: Copyright © Microsoft 2016
OriginalFilename: Patch.exe
ProductName: Crack downmienphi.com
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Lazy.8610 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.8610
FireEyeGeneric.mg.cd94330fa01c09fe
McAfeePUP-XCQ-XK
CylanceUnsafe
ZillyaTool.HackTool.Win32.2330
SangforTrojan.Win32.Wacatac.A
K7GWRiskware ( 00513a491 )
K7AntiVirusRiskware ( 00513a491 )
BitDefenderThetaGen:NN.ZemsilF.34062.Fq0@aGLS8mo
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Riskware.HackTool.Agent.Z
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Lazy.8610
SUPERAntiSpywareHack.Tool/Gen-Agent
AvastWin32:Malware-gen
TencentMsil.Risk.Riskware.Tbse
Ad-AwareGen:Variant.Lazy.8610
SophosGeneric PUA CG (PUA)
ComodoMalware@#2tl17yotpldg3
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PIG21
McAfee-GW-EditionPUP-XCQ-XK
EmsisoftGen:Variant.Lazy.8610 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
MicrosoftPUA:Win32/Presenoker
GDataGen:Variant.Lazy.8610
ALYacGen:Variant.Lazy.8610
MAXmalware (ai score=83)
TrendMicro-HouseCallTROJ_GEN.R002C0PIG21
IkarusPUA.MSIL.Riskware
FortinetRiskware/HackTool_Agent
AVGWin32:Malware-gen
Cybereasonmalicious.2eabdd
PandaTrj/GdSda.A

How to remove Lazy.8610?

Lazy.8610 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment