Crack

Win32/HackTool.CheatEngine.AA potentially unsafe removal instruction

Malware Removal

The Win32/HackTool.CheatEngine.AA potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/HackTool.CheatEngine.AA potentially unsafe virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Win32/HackTool.CheatEngine.AA potentially unsafe?


File Info:

name: 17AE601A1E48DD9F75A8.mlw
path: /opt/CAPEv2/storage/binaries/d95be4c5972d405d97b00d2273ad326e60dcb4f616eada37bf1ff82410f75042
crc32: 0CB16669
md5: 17ae601a1e48dd9f75a844881e057843
sha1: 9bf8229efeda997c3a6f6f00d28742ed35b50cab
sha256: d95be4c5972d405d97b00d2273ad326e60dcb4f616eada37bf1ff82410f75042
sha512: 47c83efaec17f2ff2c9d6d1678844d8a58d5b8087e3485329f2eaf6bd734c12d73c20c50ff19f1a40f0f7763eea9dad432cb78c8c50d7c566d85a480a1f6205b
ssdeep: 24576:eM/8u3W5Ayoq4zfn0Vkt2f3JgUZR7DSKjRgk3GHqOVLZjljKT1JYDbsuf9gINXBW:eGq4zfbmDHHifjWEns2NXBMWn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T133D56C25B381D437C0771B78490BD2F9A42ABE603E34589B36E03E4F7B796817936297
sha3_384: 88f39cba258f3589b597bb84e869ae55cc05de5ea461ddc3259fbf5009e5b2fd52e159a6259094debdf74a736f9ffe45
ep_bytes: 558bec83c4e85333c08945e88945ecb8
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName:
FileDescription: Cheat Engine 5.6.1
FileVersion: 5.6.1.12
InternalName: CheatEngine
LegalCopyright: none
LegalTrademarks: -
OriginalFilename: Cheat Engine.EXE
ProductName:
ProductVersion: 5.6.1
Comments: report bugs and or suggestions to dark_byte@hotmail.com
Translation: 0x0409 0x04e4

Win32/HackTool.CheatEngine.AA potentially unsafe also known as:

LionicRiskware.Win32.Generic.1!c
SkyhighBehavesLike.Win32.ObfuscatedPoly.vh
McAfeeGenericRXBH-JM!17AE601A1E48
Cylanceunsafe
SangforHacktool.Win32.CheatEngine.AA
CrowdStrikewin/grayware_confidence_60% (D)
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AA potentially unsafe
CynetMalicious (score: 100)
SophosGeneric Reputation PUA (PUA)
GDataWin32.Riskware.Hacktool.Q
AhnLab-V3Malware/Win32.Generic.C3601089
MalwarebytesGeneric.Malware/Suspicious
YandexTrojan.GenAsa!ff3QvkguUTQ
IkarusPUA.HackTool.Cheatengine
FortinetRiskware/PUP_z
DeepInstinctMALICIOUS

How to remove Win32/HackTool.CheatEngine.AA potentially unsafe?

Win32/HackTool.CheatEngine.AA potentially unsafe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment