Trojan

Trojan.PWS.OnlineGames.KELC removal tips

Malware Removal

The Trojan.PWS.OnlineGames.KELC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.PWS.OnlineGames.KELC virus can do?

  • Authenticode signature is invalid
  • CAPE detected the RaccoonV2 malware family
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.PWS.OnlineGames.KELC?


File Info:

name: C8B6B23A80706E75EF71.mlw
path: /opt/CAPEv2/storage/binaries/755b210d9a35ebcd954fbe7dbc2fd0fb25eb10ca784583ef35e42fd8cef3cf40
crc32: BB36A2A5
md5: c8b6b23a80706e75ef711a7627716f1f
sha1: bb0fd96fbe121118192f1e89a6a3ceb08bec48f0
sha256: 755b210d9a35ebcd954fbe7dbc2fd0fb25eb10ca784583ef35e42fd8cef3cf40
sha512: 3211ec1adf1ba732045fa339a773d81d23399874e590c32530ea002b5865188d4d9e56e70ebca5b223d966f8be46ae5121a33d948c89968ad932b16f2720caea
ssdeep: 1536:qzwshK8pUMGxo0xwwW9VemFMGfpbbVDvANyCa:wwshK8yMexbW9vJVDvANs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1434307814885EC73C15248B4278D752FDBDEDC022A20F1CBB736F7D746E618249AA39B
sha3_384: 2ba43eea5a081cd659e709351a0c1dd21cf8bba3d03d55bf3688f590a46989804f89001a7341e1a7b24641288ae092e2
ep_bytes: 558bec81ece4000000535657e8699bff
timestamp: 2022-05-26 13:58:25

Version Info:

0: [No Data]

Trojan.PWS.OnlineGames.KELC also known as:

BkavW32.GigitCrureI.Trojan
LionicTrojan.Win32.Coins.i!c
MicroWorld-eScanTrojan.PWS.OnlineGames.KELC
ClamAVWin.Malware.Coins-9954252-0
FireEyeGeneric.mg.c8b6b23a80706e75
CAT-QuickHealTrojan.CoinsRI.S28207441
ALYacTrojan.PWS.OnlineGames.KELC
Cylanceunsafe
ZillyaTrojan.Coins.Win32.7392
SangforInfostealer.Win32.Coins.Vipw
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/Coins.61987a19
K7GWPassword-Stealer ( 005935101 )
K7AntiVirusPassword-Stealer ( 005935101 )
BitDefenderThetaAI:Packer.2F4B8C041E
VirITTrojan.Win32.Genus.LHA
CyrenW32/Agent.EOR.gen!Eldorado
SymantecInfostealer.Racoon!g1
ElasticWindows.Trojan.Raccoon
ESET-NOD32Win32/RecordBreaker.A
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-PSW.Win32.Coins.acno
BitDefenderTrojan.PWS.OnlineGames.KELC
NANO-AntivirusTrojan.Win32.Coins.jpaqow
AvastWin32:MalwareX-gen [Trj]
TencentMalware.Win32.Gencirc.11898083
TACHYONTrojan-PWS/W32.Coins.56832
EmsisoftTrojan.PWS.OnlineGames.KELC (B)
F-SecureTrojan:W32/Raccoon.B
DrWebTrojan.PWS.Stealer.34599
VIPRETrojan.PWS.OnlineGames.KELC
McAfee-GW-EditionGenericRXTG-AO!C8B6B23A8070
SophosTroj/Steal-CRV
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1316144
Antiy-AVLTrojan[PSW]/Win32.Agent
XcitiumMalware@#27ib0jcrnqo7b
ArcabitTrojan.PWS.OnlineGames.KELC
ZoneAlarmTrojan-PSW.Win32.Coins.acno
GDataWin32.Trojan-Stealer.Raccoon.C
GoogleDetected
AhnLab-V3Infostealer/Win.Raccoon.R499282
McAfeeGenericRXTG-AO!C8B6B23A8070
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.Coins
MalwarebytesSpyware.PasswordStealer
PandaTrj/Genetic.gen
RisingStealer.Agent!8.C2 (KTSE)
YandexTrojan.PWS.Coins!mqtM7nlJBn0
IkarusTrojan-PSW.Agent
FortinetW32/Agent.OOQ!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan.PWS.OnlineGames.KELC?

Trojan.PWS.OnlineGames.KELC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment