Spy

OnlineGames.Spyware.Stealer.DDS removal instruction

Malware Removal

The OnlineGames.Spyware.Stealer.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What OnlineGames.Spyware.Stealer.DDS virus can do?

  • Attempts to make use of the Filter Manager
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine OnlineGames.Spyware.Stealer.DDS?


File Info:

name: A7114B3A829387977834.mlw
path: /opt/CAPEv2/storage/binaries/9f614dc2e338b9ddf89f6d9924851660f57f4f2ccfb097332577a045acba85db
crc32: 5E43DA1C
md5: a7114b3a8293879778345875311920b0
sha1: 703b5be51918301e892e196b1ee986751d868680
sha256: 9f614dc2e338b9ddf89f6d9924851660f57f4f2ccfb097332577a045acba85db
sha512: 9ff9c90248d271a51df706a14eedb5a391b379d0656221853c9ab5d25987e4a73f97ea2556672a58cd3095d784ed3310893d1d3b83c3ddbc39eef13f3d5779d9
ssdeep: 1536:mgI9IJkuvfZ/AuwBV/ixMSxzylHb/ZNoB4seHUvPJJw/bKSpYJ3XOOo5FB:n6yxvfGBV/nVNseHiPDwDCTo5F
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T122E38E46B94849E7D6C04935704A7F368AFDDC307C06A50AE7A376863C33A96BD3E607
sha3_384: 5bd0971b95593ff9fa575234a2347d5bd2a42fe143a8e94971d4a8a017185c847012aebf612807f6e6a761b3a7bac5c7
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2013-01-06 11:23:42

Version Info:

Comments:
CompanyName: ahn
FileDescription: Wshtcpip.dll
FileVersion: 1, 0, 0, 1
InternalName: Wshtcpip
LegalCopyright: Copyright ? 2012
LegalTrademarks:
OriginalFilename: Wshtcpip.dll
PrivateBuild:
ProductName: ahn Wshtcpip
ProductVersion: 1, 0, 0, 1
SpecialBuild:
Translation: 0x0804 0x04b0

OnlineGames.Spyware.Stealer.DDS also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanDeepScan:Generic.Malware.SPfPk!1g.B04EDE09
ClamAVWin.Spyware.Onlinegames-18853
FireEyeGeneric.mg.a7114b3a82938797
CAT-QuickHealPWS.OnLineGames.AH5
McAfeePWS-FBEQ!A7114B3A8293
Cylanceunsafe
ZillyaTrojan.OnLineGames.Win32.155259
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 004ff5ce1 )
AlibabaTrojanPSW:Win32/Enterak.3aee70a3
K7GWPassword-Stealer ( 004b95ae1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZedlaF.36744.jq8@aSvw7Ahb
VirITTrojan.Win32.OnlineGames4.AECU
SymantecInfostealer.Gampass
ESET-NOD32a variant of Win32/PSW.OnLineGames.QBQ
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Malware.SPfPk!1g.B04EDE09
NANO-AntivirusTrojan.Win32.OnLineGames.cuhrtd
TencentMalware.Win32.Gencirc.10b5b461
TACHYONTrojan/W32.Forwarded.Gen
BaiduWin32.Trojan-PSW.OLGames.bi
F-SecureTrojan.TR/Onlinegame.gjd.1
DrWebBackDoor.Bandito.2822
VIPREDeepScan:Generic.Malware.SPfPk!1g.B04EDE09
Trapminesuspicious.low.ml.score
SophosMal/GamePSW-C
IkarusTrojan-GameThief.Win32.OnLineGames
JiangminTrojan/Generic.armis
WebrootW32.Infostealer.Zeus
GoogleDetected
AviraTR/Onlinegame.gjd.1
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
KingsoftWin32.Trojan.Generic.a
XcitiumTrojWare.Win32.GameThief.OnLineGames.AJU@51o4ju
ArcabitDeepScan:Generic.Malware.SPfPk!1g.B04EDE09
ViRobotTrojan.Win32.PSWIGames.155136.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.17CUJBQ
VaristW32/OnlineGames.DS.gen!Eldorado
AhnLab-V3Trojan/Win32.OnlineGameHack.R48389
Acronissuspicious
VBA32BScope.TrojanPSW.Gamania
ALYacDeepScan:Generic.Malware.SPfPk!1g.B04EDE09
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
MalwarebytesOnlineGames.Spyware.Stealer.DDS
RisingStealer.OnlineGames!1.64BA (CLASSIC)
YandexTrojan.GenAsa!c980MqKGr1A
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.GameThief.OnlineGames.ajlgt
FortinetW32/GAMEPSW.C!tr
PandaTrj/Genetic.gen

How to remove OnlineGames.Spyware.Stealer.DDS?

OnlineGames.Spyware.Stealer.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment