Risk

Win64/Riskware.GameTool.D removal tips

Malware Removal

The Win64/Riskware.GameTool.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/Riskware.GameTool.D virus can do?

  • Authenticode signature is invalid

How to determine Win64/Riskware.GameTool.D?


File Info:

name: 0C45229ED80D195DC9FC.mlw
path: /opt/CAPEv2/storage/binaries/6b2a5ff887030915b1d7e8716e17e8f06f3618c9449c4be393232a5ed94473d3
crc32: 23A33AB2
md5: 0c45229ed80d195dc9fcc4d10e95c754
sha1: 7d0486c5fbbc332a2c2bc197ac2292a28b4024ac
sha256: 6b2a5ff887030915b1d7e8716e17e8f06f3618c9449c4be393232a5ed94473d3
sha512: 769431a7a2627185577f5f7adc7c60f3163862c7093e9d029018e23763f7165374991a22cdbc3f239271cd17030fc58d5942703326e218684f72a6bfad3c8248
ssdeep: 3072:WhHOtitYAQaIGxuhxUE0fhl1aTwHR2P7G82hyqFf+0/vgjITNA4DMo7SF:WZOtWIGxuNmhlgkx+7Grhyqfm4DZe
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1F2545F6567E81868F3FB5F759AFA11935D3EF8A22E20C56E0104D3891DB2F50DE32329
sha3_384: 1351310e4a7ff09bc94bcc34b5d727dca30e959de54cca5ce97d5192481ae214fef7e391602cd30774c430b6b3427149
ep_bytes: 4883ec28e85f0400004883c428e972fe
timestamp: 2021-03-23 06:48:50

Version Info:

0: [No Data]

Win64/Riskware.GameTool.D also known as:

SangforSuspicious.Win32.Save.a
ESET-NOD32a variant of Win64/Riskware.GameTool.D
FireEyeGeneric.mg.0c45229ed80d195d
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Generic.ASMalwS.3229241
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win64.RL_Generic.R364051

How to remove Win64/Riskware.GameTool.D?

Win64/Riskware.GameTool.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment