Crack

HackTool:Win32/Gamehack.E!MSR removal guide

Malware Removal

The HackTool:Win32/Gamehack.E!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/Gamehack.E!MSR virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine HackTool:Win32/Gamehack.E!MSR?


File Info:

crc32: 0E80BA30
md5: 8f1dd08f709298241b90df83514d4644
name: 8F1DD08F709298241B90DF83514D4644.mlw
sha1: da39a799c02a7430d40c44f7f43998b6f5446a71
sha256: facc1b6344c891c33db6a5eba765aaa5bbcb0f12f811a5c8c0cb022491b0d7e9
sha512: b341df06e1aa6e4f9f17b41e894076e15557f795ebae6787247d50e4ed043a1cba9d24d6a194b1ba86c370a2455651e624ab05008721f7b867c438c717fe8568
ssdeep: 24576:Kfoetg2TSsUVbA4LXyKCrgeVWAMpBDpesMy5o0IirSdE14y6ZlwD+kPI:/eu2kb5XCsvAEbezswEuwKkPI
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: *!ReLOADeD!*
InternalName: steam_api
FileVersion: 8,2,0,142
CompanyName: *!ReLOADeD!*
ProductName: Steam API
ProductVersion: 8,2,0,142
FileDescription: Steam API
OriginalFilename: steam_api
Translation: 0x0409 0x04b0

HackTool:Win32/Gamehack.E!MSR also known as:

BkavW32.AIDetectVM.malware1
FireEyeGeneric.mg.8f1dd08f70929824
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabRiskware.Win32.Crack.1!c
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00563cb01 )
K7AntiVirusTrojan ( 00563cb01 )
TrendMicroHT_CRACK_HB160001.UVPM
F-ProtW32/S-cbe10983!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Crack.EA potentially unsafe
APEXMalicious
Paloaltogeneric.ml
AlibabaHackTool:Win32/Crack.8b3409e6
RisingTrojan.Crypto!8.364 (CLOUD)
EmsisoftApplication.GameHack (A)
ComodoMalware@#3j647aoo8jw31
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
ZillyaTool.Crack.Win32.1808
Invinceaheuristic
FortinetRiskware/Crack
Trapminemalicious.high.ml.score
SophosSteam (PUA)
SentinelOneDFI – Malicious PE
CyrenW32/S-cbe10983!Eldorado
JiangminHackTool.Gamehack.ncf
WebrootRiskware.Gamehack.Gen
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan/Win32.TSGeneric
Endgamemalicious (high confidence)
MicrosoftHackTool:Win32/Gamehack.E!MSR
SUPERAntiSpywareHack.Tool/Gen-Crack
CynetMalicious (score: 90)
McAfeeCrack-Reloaded
TACHYONTrojan/W32.Gamehack.1425412
PandaTrj/GdSda.A
TrendMicro-HouseCallHT_CRACK_HB160001.UVPM
YandexPUP.Crack!
IkarusPUA.HackTool.Crack
BitDefenderThetaGen:NN.ZedlaF.34138.xD9@aS26TYni
AVGFileRepMetagen [PUP]
AvastFileRepMetagen [PUP]

How to remove HackTool:Win32/Gamehack.E!MSR?

HackTool:Win32/Gamehack.E!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment