Malware

What is “PWS:Win32/Lolyda.Z”?

Malware Removal

The PWS:Win32/Lolyda.Z is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Lolyda.Z virus can do?

  • Authenticode signature is invalid

How to determine PWS:Win32/Lolyda.Z?


File Info:

name: 3E208E80CCA2BF3119A8.mlw
path: /opt/CAPEv2/storage/binaries/d5f614de8270180c445e41aba6e93cf152de1b67904db78f0a9f1e5b3d628249
crc32: 596A97C4
md5: 3e208e80cca2bf3119a854a13a686e28
sha1: 99ada380e2bfa032b9f3f3ae600adc821598b607
sha256: d5f614de8270180c445e41aba6e93cf152de1b67904db78f0a9f1e5b3d628249
sha512: 4e58a9f6bbf4e44d21e1fc82e832d183c9ac781df878829652d11a3b1b508906e3baeea1f5e4a52a897ff124cedf876c532bba8c7c0219d876cc2111d3ac5ac5
ssdeep: 192:FWmL648MU6Ff5+/onjv4ahfzMC3usGZ4xaKuBBQ6PRQksB1d1XLGpuKX:8C6mU6F8ahI0uNaoKuBBQARQksB1nGz
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T18772093A3457D1F1C3096C39BD5A65B262A49F300D314902A729FB9C7FBE8939F20593
sha3_384: 91d23a39c060df237683ca4b1952adf8e78d9cb6345984c9970515d3f249c3961768962608f1b8ff61c1dcddf2cd597a
ep_bytes: 558bec81c4ecfeffff60837d0c010f85
timestamp: 2008-12-22 15:40:51

Version Info:

0: [No Data]

PWS:Win32/Lolyda.Z also known as:

LionicTrojan.Win32.OnLineGames.l1Jo
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Malware.!PWS!.5215782C
FireEyeGeneric.mg.3e208e80cca2bf31
SkyhighPWS-Mmorpg.gen!hv.b
ALYacSpyware.OnlineGames.HB
Cylanceunsafe
ZillyaTrojan.Magania.Win32.1356
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 0055e3dc1 )
AlibabaTrojanPSW:Win32/Magania.bfc4700c
K7GWPassword-Stealer ( 0055e3dc1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZedlaF.36744.bu4@ai3XTZl
VirITTrojan.Win32.Generic.AWTP
SymantecInfostealer.Onlinegame
ESET-NOD32a variant of Win32/PSW.OnLineGames.NRG
APEXMalicious
KasperskyTrojan-GameThief.Win32.Magania.apuy
BitDefenderGeneric.Malware.!PWS!.5215782C
NANO-AntivirusTrojan.Win32.Magania.cgcep
AvastWin32:PWSX-gen [Trj]
TencentTrojan.Win32.GamesThief.afa
TACHYONTrojan-PWS/W32.Small.16896.F
SophosMal/Prast-A
BaiduWin32.Trojan-PSW.OLGames.ae
F-SecureTrojan.TR/Spy.Gen2
DrWebTrojan.PWS.Gamania.37755
VIPREGeneric.Malware.!PWS!.5215782C
TrendMicroTSPY_ONLINEG.TOS
Trapminemalicious.high.ml.score
EmsisoftGeneric.Malware.!PWS!.5215782C (B)
SentinelOneStatic AI – Suspicious PE
GDataGeneric.Malware.!PWS!.5215782C
JiangminTrojan/PSW.QQGame.lf
WebrootW32.Lolyda.Gen
GoogleDetected
AviraTR/Spy.Gen2
VaristW32/OnlineGames.BK.gen!Eldorado
Antiy-AVLTrojan[GameThief]/Win32.Magania
KingsoftWin32.Troj.OnlineGamesT.fd.25600
XcitiumTrojWare.Win32.Magania.~awbw@f80vj
ArcabitGeneric.Malware.!PWS!.D4F9626C
ViRobotTrojan.Win32.PSWMagania.16896.C
ZoneAlarmTrojan-GameThief.Win32.Magania.apuy
MicrosoftPWS:Win32/Lolyda.Z
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.OnlineGameHack.R93046
McAfeePWS-Mmorpg.gen!hv.b
MAXmalware (ai score=100)
VBA32TrojanPSW.Magania
PandaGeneric Malware
TrendMicro-HouseCallTSPY_ONLINEG.TOS
RisingTrojan.PSW.Win32.GameOLHB.i (CLASSIC)
YandexTrojan.OnlineGames.Gen.107
IkarusGeneric.PWS.Games
MaxSecureTrojan.Malware.7598.susgen
FortinetW32/Onlinegames.ZTO!tr
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS

How to remove PWS:Win32/Lolyda.Z?

PWS:Win32/Lolyda.Z removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment