Trojan

How to remove “Dropped:Trojan.PWS.Onlinegames.KDPK”?

Malware Removal

The Dropped:Trojan.PWS.Onlinegames.KDPK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.PWS.Onlinegames.KDPK virus can do?

  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the embedded pe malware family
  • Binary file triggered YARA rule
  • Created a service that was not started
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Dropped:Trojan.PWS.Onlinegames.KDPK?


File Info:

name: 410F45983A2B7869F941.mlw
path: /opt/CAPEv2/storage/binaries/5df3000bb2b654ffa4c9be99d2bdcb307e060230bbb2857452b53038d014927c
crc32: 5FF93AED
md5: 410f45983a2b7869f941ab17bda03458
sha1: 9f4d63647655d9dfa5f36f9a59465eee9e2c1ea9
sha256: 5df3000bb2b654ffa4c9be99d2bdcb307e060230bbb2857452b53038d014927c
sha512: af455caaf565a3cbe50d1f98cd7b6f8a362db9a0bc60c8d7ea6a1ba05bef770efa621b49269ae7629222576a420334e0ea9628c855b99a8f4c0d983df9a3c148
ssdeep: 3072:JSh5h/1sumA3JHZrpq+xDAzL8Im43qkPZRV:shjIQJ5lQ4Im43qkPTV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ADD3CF22D68201F7E3255C30B58B773B9A3D657117E662D7AF33ED7C99B3222A418306
sha3_384: 34e0945b48d84ef3db88a23e5e2369982b14abed0e110e04c2551f5e701abe3a15f6638b349323fcbbea79beb30a44fa
ep_bytes: 558bec6aff68a022400068001f400064
timestamp: 2010-07-27 15:44:45

Version Info:

0: [No Data]

Dropped:Trojan.PWS.Onlinegames.KDPK also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Magania.lqRo
Elasticmalicious (moderate confidence)
MicroWorld-eScanDropped:Trojan.PWS.Onlinegames.KDPK
FireEyeGeneric.mg.410f45983a2b7869
SkyhighBehavesLike.Win32.Generic.ch
McAfeePWS-OnlineGames.ja
Cylanceunsafe
VIPREDropped:Trojan.PWS.Onlinegames.KDPK
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanPSW:Win32/OnLineGames.86e48dff
K7GWTrojan ( 004bcce41 )
K7AntiVirusTrojan ( 004bcce41 )
BitDefenderThetaGen:NN.ZexaF.36802.imW@aOO82El
VirITTrojan.Win32.OLG.ARCE
SymantecInfostealer.Gampass
ESET-NOD32a variant of Win32/PSW.OnLineGames.QJF
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-GameThief.Win32.OnLineGames.bnnq
BitDefenderDropped:Trojan.PWS.Onlinegames.KDPK
NANO-AntivirusTrojan.Win32.QQPass.kwqiq
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.13c1945b
EmsisoftDropped:Trojan.PWS.Onlinegames.KDPK (B)
F-SecureTrojan.TR/Drop.QQPass.A
DrWebTrojan.MulDrop3.8568
Trapminemalicious.high.ml.score
SophosMal/Runic-D
IkarusTrojan-GameThief.Win32.OnLineGames
JiangminTrojan/PSW.QQPass.jsx
AviraTR/Drop.QQPass.A
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
Kingsoftmalware.kb.a.1000
MicrosoftPWS:Win32/OnLineGames.HU
XcitiumTrojWare.Win32.Magania.CJY@4rc3bl
ArcabitTrojan.PWS.Onlinegames.KDPK
ZoneAlarmTrojan-GameThief.Win32.OnLineGames.bnnq
GDataDropped:Trojan.PWS.Onlinegames.KDPK
VaristW32/S-abec5075!Eldorado
AhnLab-V3Dropper/Win32.OnlineGameHack.R251
Acronissuspicious
VBA32BScope.Trojan.Agent
ALYacDropped:Trojan.PWS.Onlinegames.KDPK
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingStealer.OnlineGames!1.6A20 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.1514040.susgen
FortinetW32/QQPass.TDP!tr.pws
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.83a2b7
DeepInstinctMALICIOUS
alibabacloudTrojan[stealer]:Win/OnLineGames.QJF

How to remove Dropped:Trojan.PWS.Onlinegames.KDPK?

Dropped:Trojan.PWS.Onlinegames.KDPK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment