Trojan

Trojan.PWS.Onlinegames.KEGA removal

Malware Removal

The Trojan.PWS.Onlinegames.KEGA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.PWS.Onlinegames.KEGA virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.PWS.Onlinegames.KEGA?


File Info:

name: B3E26DAACDECA37D7B17.mlw
path: /opt/CAPEv2/storage/binaries/0dd6e291854c342c3f2346634fd1fe6deae2b4b8d4f7c0fd8f4a6d2970653cff
crc32: 888925D4
md5: b3e26daacdeca37d7b17fc7f884f989c
sha1: 4ddf515758a6cf8392336af89290ef16f6c1b9fa
sha256: 0dd6e291854c342c3f2346634fd1fe6deae2b4b8d4f7c0fd8f4a6d2970653cff
sha512: 9d560e67c85488514edd666184b077e0694b5923a8238933f73d174f2a1c96b6f5a6116965f8752c38fab68fb6ec9e0eae7c0614f9d8c1a0c5258a77ef15c4e0
ssdeep: 1536:IykzkagsA/7Sc1zPP4ei3Tta/mKDDx9q4gZIaltLvkn:IFzkaRmzAesxazDXqOaltbkn
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1E873BEE5662A7A76E37BCEBB889F7C38CA1623F77963B5CF442450450175281EF0284E
sha3_384: c14101dbe6afb4c649c526fb83b1a4bcdae12f95cdc1a8d9694e60f9b508755c5d608269b79336250f1cbe64a5df487d
ep_bytes: 807c2408010f85b901000060be00a000
timestamp: 2011-02-27 14:47:21

Version Info:

0: [No Data]

Trojan.PWS.Onlinegames.KEGA also known as:

BkavW32.FamVT.Kykymber.P.Trojan
MicroWorld-eScanTrojan.PWS.Onlinegames.KEGA
FireEyeGeneric.mg.b3e26daacdeca37d
CAT-QuickHealTrojan.OnlinegaRI.S27525962
SkyhighBehavesLike.Win32.PWSOnlineGames.lm
McAfeePWS-OnlineGames.ke
Cylanceunsafe
ZillyaTrojan.Kykymber.Win32.1920
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/OnLineGames.4a33e73a
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BaiduWin32.Trojan-PSW.OnLineGames.g
SymantecInfostealer
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/PSW.OnLineGames.PMG
APEXMalicious
TrendMicro-HouseCallTROJ_KYMBER.SM3
ClamAVWin.Trojan.Kykymber-6
KasperskyTrojan-PSW.Win32.Kykymber.dplc
BitDefenderTrojan.PWS.Onlinegames.KEGA
NANO-AntivirusTrojan.Win32.Kykymber.ftzyr
AvastWin32:Trojan-gen
TencentTrojan.Win32.OnlineGames.syw
TACHYONTrojan-PWS/W32.Kykymber.94468
SophosMal/Generic-R
GoogleDetected
F-SecureDropper.DR/PSW.Kykymber.JZ
DrWebTrojan.PWS.Wsgame.27608
VIPRETrojan.PWS.Onlinegames.KEGA
TrendMicroTROJ_KYMBER.SM3
EmsisoftTrojan.PWS.Onlinegames.KEGA (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PSW.Kykymber.afh
WebrootW32.Infostealer.Onlinegames.Gen
VaristW32/OnlineGames.GQ.gen!Eldorado
AviraDR/PSW.Kykymber.JZ
Antiy-AVLTrojan[PSW]/Win32.Kykymber
Kingsoftmalware.kb.b.996
MicrosoftTrojan:Win32/Vindor!pz
XcitiumTrojWare.Win32.PSW.GamePass.C@2mkvnv
ArcabitTrojan.PWS.Onlinegames.KEGA
ViRobotTrojan.Win32.A.PSW-Kykymber.76620[UPX]
ZoneAlarmTrojan-PSW.Win32.Kykymber.dplc
GDataWin32.Trojan.PSE.12EOLBX
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Onlinegamehack36.Gen
Acronissuspicious
BitDefenderThetaGen:NN.ZedlaF.36802.emRfa0gYJ9p
ALYacTrojan.PWS.Onlinegames.KEGA
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Kykymber.A
RisingTrojan.PSW.Win32.OnlineGame.ayn (CLASSIC)
YandexTrojan.GenAsa!V1+u/RlSr+w
IkarusTrojan-PWS.Win32.Kykymber
MaxSecurenot-a-virus-PSW-OnlineGames.Gen
FortinetW32/Onlinegames.XQB!tr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
alibabacloudRiskWare:Win/OnLineGames.PMG

How to remove Trojan.PWS.Onlinegames.KEGA?

Trojan.PWS.Onlinegames.KEGA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment