Trojan

Trojan-GameThief.Win32.Magania.uuos (file analysis)

Malware Removal

The Trojan-GameThief.Win32.Magania.uuos is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-GameThief.Win32.Magania.uuos virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file

Related domains:

www.baidu.com

How to determine Trojan-GameThief.Win32.Magania.uuos?


File Info:

crc32: 8FAD0051
md5: 43a7b4be83885db610809069608f799c
name: 43A7B4BE83885DB610809069608F799C.mlw
sha1: 0e894569661e5c6c70ecc9207bff13d1c953fddf
sha256: 3a7d0731686f60ac4436b40a5ee3dc159a9aa1932f2d48aa10810600f67158ce
sha512: c1876e0fdb55e70a6f0a69049579a929ade76c3741dd0b50e2bb66fc4ce474f9299d845bdf673bccf7da911226d4905933d39b9c6f97ac8e6a1345ce9dcb34fc
ssdeep: 24576:tjbdnXSiTJ0rChGsTcw4poJ+M8/eFMBAFEh:t3lXSiuehGsKo+MyeFMVh
type: MS-DOS executable, MZ for MS-DOS

Version Info:

LegalCopyright: Microsoft(TM) JCSLPRJSKP
InternalName: System PrntScrn
FileVersion: Microsoft(TM) HKPCXGFFCZ
CompanyName: Microsoft(C) Corporation7.620
ProductName: Microsoft(TM) GBWYDIELOB
ProductVersion: 1.0.0.1
FileDescription: Microsoft(C) Corporation
OriginalFilename: Microsoft(TM) LOABZLOKMP
Translation: 0x0804 0x04b0

Trojan-GameThief.Win32.Magania.uuos also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 0050718d1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Magania.uuos
CrowdStrikewin/malicious_confidence_80% (D)
K7GWAdware ( 0050718d1 )
Cybereasonmalicious.9661e5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastFileRepMetagen [Malware]
KasperskyTrojan-GameThief.Win32.Magania.uuos
SophosGeneric PUA AO (PUA)
BitDefenderThetaGen:NN.ZexaF.34266.!muaauDQoqbb
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.dc
FireEyeGeneric.mg.43a7b4be83885db6
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Malware/Win.AGEN.C4604888
Acronissuspicious
McAfeeRDN/Generic.rp
VBA32Backdoor.Poison
YandexTrojan.PWS.Magania!0lhcQ4c+5TA
FortinetRiskware/Application
AVGFileRepMetagen [Malware]
Paloaltogeneric.ml

How to remove Trojan-GameThief.Win32.Magania.uuos?

Trojan-GameThief.Win32.Magania.uuos removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment