Trojan

Trojan.PWS.OnlineGames.AACN (B) removal

Malware Removal

The Trojan.PWS.OnlineGames.AACN (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.PWS.OnlineGames.AACN (B) virus can do?

  • Uses Windows utilities for basic functionality
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.PWS.OnlineGames.AACN (B)?


File Info:

name: 99B593E26204236AEE5F.mlw
path: /opt/CAPEv2/storage/binaries/3b446791b282e75542b03504b08377705dfef6720850581094e1f30a868f736c
crc32: 56B4BEA1
md5: 99b593e26204236aee5f73ecf87eeeab
sha1: 7a2cd9479833092a2a5efeef2f34c82ea4bb795d
sha256: 3b446791b282e75542b03504b08377705dfef6720850581094e1f30a868f736c
sha512: 31a9a198e1c7176b5c5c363a10b0a3dbb6323da484c3eca540958a195abb18649577bb38f8fead6d252ea0245a0b39aeaeff10470dbae053d82193e62f6e5c17
ssdeep: 192:tVzT6gfLcDLcALc8Dx57YtpWh97XBlySIKONT8GTz+:rzTrfoDL+676WL7X2SVIT8U+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17B42CF6F87C88F2DCC56263F03A565E02CAF321147CF4BC25C7896F9B5D20524A359A7
sha3_384: 0b0683abb1e22481def2830b19f22f630233595a3340b13d55d3b772fe268da9b9d2de2dc0d05a9db0007af35cae91e0
ep_bytes: 60be00b040008dbe0060ffff5783cdff
timestamp: 2008-10-29 21:14:00

Version Info:

0: [No Data]

Trojan.PWS.OnlineGames.AACN (B) also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.OnLineGames.l4Z4
Elasticmalicious (moderate confidence)
CynetMalicious (score: 99)
CMCGeneric.Win32.99b593e262!CMCRadar
SkyhighBehavesLike.Win32.Fesber.lc
ALYacTrojan.Dropper.OnlineGames
ZillyaTrojan.OnLineGames.Win32.12623
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.PWS.OnlineGames.AACN
K7GWPassword-Stealer ( 004c6bcb1 )
K7AntiVirusPassword-Stealer ( 004c6bcb1 )
BaiduWin32.Trojan-PSW.OLGames.by
SymantecInfostealer.Gampass
ESET-NOD32a variant of Win32/PSW.OnLineGames.NXI
APEXMalicious
ClamAVWin.Spyware.55994-2
KasperskyTrojan-GameThief.Win32.OnLineGames.tqyz
AlibabaTrojanSpy:Win32/OnLineGames.8c98e4d1
NANO-AntivirusTrojan.Win32.OnLineGames.cwooqz
ViRobotTrojan.Win32.PSWIGames.12288.CH
MicroWorld-eScanTrojan.PWS.OnlineGames.AACN
AvastWin32:Evo-gen [Trj]
RisingTrojan.PSW.Win32.GameOL.nvl (CLASSIC)
EmsisoftTrojan.PWS.OnlineGames.AACN (B)
F-SecureTrojan.TR/Agent.fxbb
DrWebTrojan.PWS.Wsgame.8380
VIPRETrojan.PWS.OnlineGames.AACN
TrendMicroTSPY_ONLINEG.CHS
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.99b593e26204236a
SophosMal/Zhengtu-A
IkarusTrojan-GameThief.Win32.OnLineGames
GDataTrojan.PWS.OnlineGames.AACN
JiangminTrojanSpy.OnLineGames.huw
WebrootW32.Trojan.Trojan-PWS-OnlineGam
VaristW32/OnlineGames.AQ.gen!Eldorado
AviraTR/Agent.fxbb
MAXmalware (ai score=100)
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
XcitiumTrojWare.Win32.GameThief.Onlinegames.~d048@1qf1h9
ArcabitTrojan.PWS.OnlineGames.AACN
ZoneAlarmTrojan-GameThief.Win32.OnLineGames.tqyz
MicrosoftTrojanSpy:Win32/Treemz.gen!A
GoogleDetected
AhnLab-V3Dropper/Win32.OnlineGameHack.R271
McAfeeGeneric Dropper.cd
VBA32BScope.TrojanSpy.Treemz
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_ONLINEG.CHS
TencentWin32.Trojan-GameThief.Onlinegames.Ogil
YandexTrojan.PWS.OnLineGames!6pYnoVW4Wwo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.1743836.susgen
FortinetW32/Dropper.GE!tr
BitDefenderThetaAI:Packer.5EB9BB4F21
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.798330
DeepInstinctMALICIOUS

How to remove Trojan.PWS.OnlineGames.AACN (B)?

Trojan.PWS.OnlineGames.AACN (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment