Malware

Mal/GamePSW-C removal guide

Malware Removal

The Mal/GamePSW-C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/GamePSW-C virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • A file was accessed within the Public folder.
  • Authenticode signature is invalid

How to determine Mal/GamePSW-C?


File Info:

name: AC4E092B6AA7ED4DA07E.mlw
path: /opt/CAPEv2/storage/binaries/cc8433f89ad58d85bae0a4f07f8a7a72683e5e6e012957b366a560a0da970890
crc32: C208DB22
md5: ac4e092b6aa7ed4da07ea54fbe943eb4
sha1: fda6bc77a0e2a5619d28c9d3b9652888104543a8
sha256: cc8433f89ad58d85bae0a4f07f8a7a72683e5e6e012957b366a560a0da970890
sha512: c2cd726fef3e22f46099b8035af3f25c13f57154fe95b167619a85d23ef78dd51f6be7f31c8494c4948e45452f4bb5612be7bd5d118eb36aa56499ee9d714e84
ssdeep: 24576:nrrB7zy1gq80bff2R6Wx5H4Tr3vD9/PIk:0ut0b32R6Y5H4TTvD9/gk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1090559157AA1C436C022D17DC868D6F53266AC300E27798772D83F2F7A735D29EF16A2
sha3_384: 9cec707142d2b740bfd7ddf0698ad8f5e8ca087a1b9bf6fa59fcb8a5dbe5037aa4aea5314dd48a386526fdb872d2faa4
ep_bytes: e887060000e984feffff8b4df464890d
timestamp: 2018-06-27 19:04:54

Version Info:

Comments: http://www.wowhead.com/client
CompanyName: Wowhead
FileDescription: The Wowhead Client installs and maintains an addon called the Wowhead Looter, which collects data as you play the game. It also uploads the collected data and your characters' information to the Wowhead website!
FileVersion: 1.9.3.0
InternalName: Wowhead Client
LegalCopyright: © 2018 Wowhead
OriginalFilename: Wowhead_Client.exe
ProductName: Wowhead Client
ProductVersion: 1.9.3.0
Translation: 0x0009 0x04b0

Mal/GamePSW-C also known as:

BkavW32.Common.EC8EEEA9
LionicTrojan.Win32.Generic.4!c
SkyhighBehavesLike.Win32.BadFile.bm
McAfeeArtemis!AC4E092B6AA7
AlibabaTrojan:Win32/GamePSW.d1a5a10c
APEXMalicious
AvastWin32:Malware-gen
SophosMal/GamePSW-C
Trapminemalicious.high.ml.score
GoogleDetected
Cylanceunsafe
PandaTrj/GdSda.A
RisingTrojan.Generic@AI.86 (RDML:oLJoU1RZ633dgNeHQ/LA2w)
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_60% (D)

How to remove Mal/GamePSW-C?

Mal/GamePSW-C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment