Malware

Win32/GameTool.DX potentially unsafe removal

Malware Removal

The Win32/GameTool.DX potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GameTool.DX potentially unsafe virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/GameTool.DX potentially unsafe?


File Info:

name: 3A047855D9228C2845CA.mlw
path: /opt/CAPEv2/storage/binaries/df65a45c76a764de94be03a11dc99e2ec77dc374871061ddb5ea4925b593a706
crc32: 38C0A054
md5: 3a047855d9228c2845ca8fca2dd63156
sha1: dae0971f0fc9029a16f82e450c0fc13ded8e0dfc
sha256: df65a45c76a764de94be03a11dc99e2ec77dc374871061ddb5ea4925b593a706
sha512: 414b755ab72ee63443a40911398796bea7d1107de353d6d903307bb4ffe7d27e4a39f461d99fc9faa9dce3ff94c38025ee1534319514e180e3162c6916bef212
ssdeep: 12288:Aa2dPxqMcmPDwj9TNXx0mHKdBO2zhlF/o:32dpqWPoNhNHKS2z32
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB155C00B7CAC1F3CEC7453D05EED65D962BA5861B111DD7E3AC0B0F8E547E2AA36289
sha3_384: 3ca9ffe1c4019afce26b9a52d2cccac5e26fe9f903a3e15efebd2be658658a37dffc5332fff156e5a5f80325d750a8ca
ep_bytes: e8646c0000e916feffff558bec83ec20
timestamp: 2011-07-01 06:42:28

Version Info:

0: [No Data]

Win32/GameTool.DX potentially unsafe also known as:

LionicTrojan.Win32.Swisyn.4!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Infected.dh
McAfeeGenericRXEP-EN!3A047855D922
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaTrojanSpy:Win32/QQpass.f295bbbb
VirITTrojan.Win32.Generic.BPDV
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/GameTool.DX potentially unsafe
CynetMalicious (score: 100)
ClamAVWin.Malware.Swisyn-9968222-0
NANO-AntivirusTrojan.Win32.Swisyn.brkaxv
AvastWin32:Trojan-gen
RisingTrojan.Generic@AI.96 (RDMK:gH95ljhOMW5Rf7tS6va9pw)
TACHYONTrojan/W32.Swisyn.934326
DrWebTrojan.PWS.Spy.18034
ZillyaTrojan.Swisyn.Win32.25260
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.3a047855d9228c28
SophosMal/Generic-S
IkarusTrojan.Win32.Swisyn
JiangminTrojan/Swisyn.tpf
WebrootW32.Trojan.Gen
VaristW32/S-13cf9944!Eldorado
Antiy-AVLRiskWare/Win32.GameTool
MicrosoftPWS:Win32/QQpass
GoogleDetected
AhnLab-V3Trojan/Win32.Swisyn.R50961
BitDefenderThetaGen:NN.ZexaF.36802.5qX@amJKnVci
VBA32TrojanPSW.Spy
MalwarebytesGeneric.Malware.AI.DDS
PandaGeneric Malware
TencentMalware.Win32.Gencirc.10b33043
YandexTrojan.GenAsa!QC6iUdGpm8w
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.73455369.susgen
FortinetW32/Generic.AC.2300C8!tr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudAdware.Win.Agent.d69c1a6f

How to remove Win32/GameTool.DX potentially unsafe?

Win32/GameTool.DX potentially unsafe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment