Malware

PWS:Win32/Lolyda!pz removal guide

Malware Removal

The PWS:Win32/Lolyda!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Lolyda!pz virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine PWS:Win32/Lolyda!pz?


File Info:

name: 31011086B10292C0C90E.mlw
path: /opt/CAPEv2/storage/binaries/6c9a77c5aac05754a371d22ca9047064eddca6f36654378015e5fac0569c4c18
crc32: ED2854F4
md5: 31011086b10292c0c90eb7c68722e02e
sha1: 327e97c623555bd7c636c16ee0c8aef926537c84
sha256: 6c9a77c5aac05754a371d22ca9047064eddca6f36654378015e5fac0569c4c18
sha512: a2a1f09663047e4cb489783b012a0c1bc5ed8779fa35738f448c402a934e0990b63257f1e05cecbc1c33eb5e41394d7ca0db297e5fb7c1cb63d3dc8b48db0a06
ssdeep: 768:tpFCXEL6Chde6ZU2DKeEbJP7owLdiHNiOEhsKdR9DubXg:tpFBLfhAyHKeg7owLE0rsKdRsbQ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T10BF26D137A0789B2D1D3423076A13B768BFC28351E0361AAEF72DA5B2D759C2DA75207
sha3_384: 88cc8b4bc362848f7bb97ac455076a28bcb757402c3a8940bed3adb19cf499fa2b1e963ec04e6fe3c07f11c338c81c66
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2012-02-27 04:39:16

Version Info:

0: [No Data]

PWS:Win32/Lolyda!pz also known as:

BkavW32.ReplaceMiKsLT.Fam.RSF
LionicTrojan.Win32.Generic.lnFT
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.C35DC41E.A.BF14F456
FireEyeGeneric.mg.31011086b10292c0
CAT-QuickHealTrojanPWS.Lolyda.BF5
SkyhighBehavesLike.Win32.PWSOnlineGames.nh
McAfeePWS-OnlineGames.hi.gen.a
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.C35DC41E.A.BF14F456
SangforSuspicious.Win32.Save.ins
K7AntiVirusPassword-Stealer ( 00305a831 )
BitDefenderGeneric.Dacic.C35DC41E.A.BF14F456
K7GWPassword-Stealer ( 00305a831 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitGeneric.Dacic.C35DC41E.A.BF14F456
BaiduWin32.Trojan-PSW.OLGames.i
VirITTrojan.Win32.Generic.ATQW
SymantecDownloader
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/PSW.OnLineGames.PGB
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Razy-9946910-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanPSW:Win32/Lolyda.fdf6eb9b
NANO-AntivirusTrojan.Win32.Gen2.goxyr
ViRobotTrojan.Win32.A.PSW-Frethoq.35617.FC
TencentTrojan.Win32.OnlineGame.e
SophosMal/PWS-AL
F-SecureTrojan.TR/PSW.Lolyda.bfmna
DrWebTrojan.PWS.Gamania.34411
ZillyaTrojan.OnLineGames.Win32.107200
TrendMicroTROJ_RVERSE.SMI
EmsisoftGeneric.Dacic.C35DC41E.A.BF14F456 (B)
IkarusTrojan-GameThief.Win32.Frethoq
JiangminTrojan/Generic.ppwm
WebrootW32.Trojan.Gen
VaristW32/QQhelper.C.gen!Eldorado
AviraTR/PSW.Lolyda.bfmna
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
KingsoftWin32.Troj.Agent.za.35617
XcitiumTrojWare.Win32.Agent.GOM@4ogssq
MicrosoftPWS:Win32/Lolyda!pz
SUPERAntiSpywareTrojan.Agent/Gen-GameSpy
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan-Spy.Lolyda.B
GoogleDetected
AhnLab-V3Trojan/Win32.HDC.C142628
Acronissuspicious
BitDefenderThetaGen:NN.ZedlaF.36744.cq5@ayIvuUl
ALYacGeneric.Dacic.C35DC41E.A.BF14F456
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32BScope.TrojanPSW.Gamania
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_RVERSE.SMI
RisingStealer.OnlineGames!1.647F (CLASSIC)
YandexTrojan.GenAsa!ztlEN28ldQU
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.HI.GEN
FortinetW32/OnLineGames.REV!tr
AVGWin32:Agent-AMTO [Spy]
AvastWin32:Agent-AMTO [Spy]

How to remove PWS:Win32/Lolyda!pz?

PWS:Win32/Lolyda!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment