Malware

How to remove “PWS:Win32/Lolyda.AA”?

Malware Removal

The PWS:Win32/Lolyda.AA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Lolyda.AA virus can do?

  • Authenticode signature is invalid

How to determine PWS:Win32/Lolyda.AA?


File Info:

name: 00B1084A43DB6EEA6524.mlw
path: /opt/CAPEv2/storage/binaries/39ed402345965814849c5c2cb5d98028ebc3ad00a168715cfbf03d0666239d7e
crc32: 903996D9
md5: 00b1084a43db6eea65243c594ace710a
sha1: 6b2cdf12e8e8c7a3dbfe001391bc6a06ce08ffa3
sha256: 39ed402345965814849c5c2cb5d98028ebc3ad00a168715cfbf03d0666239d7e
sha512: 74657b8429053d2ef0958a5db0daa69c9ca7abd810a5a6e3529b37abfb4a6f68fff04add63fff96fe902ce44898cab7c640b5af040d0c4608923a95dcfc5c391
ssdeep: 768:8UOmmGoWzlyne2Obwp2VxUl2sSBBQARQkDT4i:80mG9zlynWk2V62sSBBQARX
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T14434F96738B688F1C19A4A39693D2A7012FC2935C778A5D3EB61B80C7BF56D793310D2
sha3_384: 2e082eb2c320ec6c0c7409efbf887fe10d386eecdff9a6f3b94c4a43af6292542e535d5c9b24603232406eddea4eee92
ep_bytes: 558bec81c4d0feffff60837d0c010f85
timestamp: 2009-01-09 07:40:15

Version Info:

0: [No Data]

PWS:Win32/Lolyda.AA also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.OnLineGames.l1Jo
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.PWS.Onlinegames.AALW
CAT-QuickHealTrojan.OnLineGames.gen
SkyhighBehavesLike.Win32.Rootkit.dz
McAfeeGeneric PWS.am
MalwarebytesMalware.AI.3586118325
ZillyaTrojan.OnLineGames.Win32.7957
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2ca94.None
K7GWTrojan ( 000ff4001 )
K7AntiVirusTrojan ( 000ff4001 )
BaiduWin32.Trojan-PSW.OLGames.ae
VirITTrojan.Win32.OnlineGames_r.AV
SymantecInfostealer.Onlinegame
Elasticmalicious (high confidence)
ESET-NOD32Win32/PSW.OnLineGames.NTM
APEXMalicious
TrendMicro-HouseCallTSPY_ONLINEG.TOS
ClamAVHtml.Trojan.PWSAgent-27
KasperskyTrojan-GameThief.Win32.OnLineGames.uhbb
BitDefenderTrojan.PWS.Onlinegames.AALW
NANO-AntivirusTrojan.Win32.OnLineGames.bptfc
AvastWin32:Lolyda [Trj]
TencentTrojan.Win32.Lolyda.aa
SophosTroj/PWSA-Fam
F-SecureTrojan.TR/PSW.Online.apyf
DrWebTrojan.PWS.Gamania.17198
VIPRETrojan.PWS.Onlinegames.AALW
TrendMicroTSPY_ONLINEG.TOS
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.00b1084a43db6eea
EmsisoftTrojan.PWS.Onlinegames.AALW (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=87)
JiangminTrojan/PSW.OnLineGames.avbt
WebrootW32.Lolyda.Gen
GoogleDetected
AviraTR/PSW.Online.apyf
VaristW32/PWStealer.OIC
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames.uhbb
KingsoftWin32.Troj.OnlineGamesT.fd.25600
MicrosoftPWS:Win32/Lolyda.AA
XcitiumTrojWare.Win32.GameThief.OnlineGames.~ACC@4xjs8
ArcabitTrojan.PWS.Onlinegames.AALW
ViRobotTrojan.Win32.PSWIGames.245760.H
ZoneAlarmTrojan-GameThief.Win32.OnLineGames.uhbb
GDataTrojan.PWS.Onlinegames.AALW
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.OnlineGameHack.R19108
BitDefenderThetaAI:Packer.B55B3ED41E
ALYacTrojan.PWS.Onlinegames.AALW
TACHYONTrojan-PWS/W32.WebGame.245760.I
VBA32Trojan-GameThief.OnLineGames
Cylanceunsafe
PandaTrj/OnLineGames.gen
RisingStealer.OnlineGames!1.6AAC (CLASSIC)
YandexTrojan.PWS.OnLineGames!YjwdF/rhRF0
IkarusGeneric.PWS.Games
MaxSecureTrojan.Malware.1024620.susgen
FortinetW32/OnlineGames.HLG!tr.pws
AVGWin32:Lolyda [Trj]
DeepInstinctMALICIOUS

How to remove PWS:Win32/Lolyda.AA?

PWS:Win32/Lolyda.AA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment