Malware

How to remove “MSIL/PSW.OnLineGames_AGen.A”?

Malware Removal

The MSIL/PSW.OnLineGames_AGen.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/PSW.OnLineGames_AGen.A virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/PSW.OnLineGames_AGen.A?


File Info:

name: 345801E00E9B005A1547.mlw
path: /opt/CAPEv2/storage/binaries/a0c7aa7a0b72d39fc37dbfab3475104403fa81103cec8493d9a75a31375bb511
crc32: B82D0356
md5: 345801e00e9b005a15477fe27b8c8d31
sha1: c0e93cc1313e18f1dbccd87efedbea43737ab530
sha256: a0c7aa7a0b72d39fc37dbfab3475104403fa81103cec8493d9a75a31375bb511
sha512: 0963478c5f5cdd8dc528b62996884ebfce91e5fdbbebd37c9d5d35f5e0707d0d02fb447c3967dd9e98e3ba79c2fc492af3d83b247860f877d7e594461643e43f
ssdeep: 1536:MRNvzeZyey8x8/Exbd7/Q23s10J+01JjwWtNU:MjeLBhjM01eWTU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19F833A0C93E58721F87E83BD54A65A0553F1A017D057EB4D7FD8A0EB2F233AAA5113A3
sha3_384: 6ab527e2ad65ee3a62751b4110510ece3f9e6c2225c638523be0931b7ee3a7d2c2367306c8f27a51a42af2c4347c1a38
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-05-19 06:09:29

Version Info:

Translation: 0x0000 0x04b0
Comments: Point Blank Battle
CompanyName: Phoenix Team
FileDescription: Point Blank Battle
FileVersion: 2.1.3.0
InternalName: PointBlank.Battle.exe
LegalCopyright: Copyright © Phoenix Team
LegalTrademarks:
OriginalFilename: PointBlank.Battle.exe
ProductName: Point Blank Server
ProductVersion: 2.1.3.0
Assembly Version: 1.0.0.0

MSIL/PSW.OnLineGames_AGen.A also known as:

MicroWorld-eScanTrojan.GenericKD.62289845
McAfeeArtemis!345801E00E9B
VIPRETrojan.GenericKD.62289845
SangforInfostealer.Win32.OnLineGames.Vm90
ESET-NOD32a variant of MSIL/PSW.OnLineGames_AGen.A
TrendMicro-HouseCallTROJ_GEN.R002H09IQ22
BitDefenderTrojan.GenericKD.62289845
TencentWin32.Trojan.Redcap.Cflw
Ad-AwareTrojan.GenericKD.62289845
EmsisoftTrojan.GenericKD.62289845 (B)
McAfee-GW-EditionArtemis
FireEyeTrojan.GenericKD.62289845
SophosMal/Generic-S
IkarusTrojan.MSIL.PSW
GDataTrojan.GenericKD.62289845
GoogleDetected
AviraTR/Redcap.icckq
ArcabitTrojan.Generic.D3B677B5
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.62289845
APEXMalicious
RisingStealer.OnLineGames!8.131 (CLOUD)
MAXmalware (ai score=87)
FortinetMalicious_Behavior.SB

How to remove MSIL/PSW.OnLineGames_AGen.A?

MSIL/PSW.OnLineGames_AGen.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment