Home / Spyware Encyclopedia / PSW.generic << Back

Recommendation to Automatically remove PSW.generic


Our products can remove PSW.generic and thousands of other Virus and Spyware automatically and instantly.

PSW.generic Details


  • Category PSW
  • Discovered 10/25/2024 4:12:15 PM
  • Modified 10/25/2024 5:51:41 PM
  • Threat Level Medium
  • Category Description
    This family of Trojans steals passwords, normally system passwords from victim machines. They search for system files which contain confidential information such as passwords and Internet access telephone numbers and then send this information to an email address coded into the body of the Trojan. The 'master' or user of the illegal program will then retrieve and misuse this information. Most common behavior: 1. Ask for password using fake window 2. Change ICQ, MSN and AOL configuration 3. Get cached Windows passwords

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
2ab429eb.exe 578309Ada99.com1.4.0.03f2524ffc80b13ae5e6efe3359e64e5d 
ntsys.dll 384000  42036b34e0a580d690a1cd718533d0fe 
aa3128a81c508c72ead11a63660ce0e5.exe 647183wQmпT3.7.6.1aa3128a81c508c72ead11a63660ce0e5 
b86c4b3fbd0939633fdaec54522e2c96.exe 482304 0.0.0.0b86c4b3fbd0939633fdaec54522e2c96 
b9083e9fb2615824214f0c29ac6f7b05.exe 527360AIMP DevTeam3.2.0.1165b9083e9fb2615824214f0c29ac6f7b05 
3791cac9323add037b8ff23cb616422f.exe 218112Unitrin Inc18.1.7.23791cac9323add037b8ff23cb616422f 
103f6a0cf6d2e5b23e1c444de6e9e728.exe 647168eil@silrg3.103f6a0cf6d2e5b23e1c444de6e9e728 
70f3faaa819e53aa1a890285fc7110d1.exe 2155520 1.0.0.070f3faaa819e53aa1a890285fc7110d1 
5dac5c16707793e77ee582bff333750a.exe 817664 0.0.0.05dac5c16707793e77ee582bff333750a 
60e7b033e831693268ff144da7537116.exe 430080iIyZkWн3.7.6.160e7b033e831693268ff144da7537116 

The following Registry Entries were created:
..\System\CurrentControlSet\Enum\root\legacy_winserverviewrs\(Default)
..\System\CurrentControlSet\Services\winserverviewrs\(Default)
..\Software\Classes\2ab429eb.mynshandler\(Default)
..\Software\Classes\Clsid\{e8cfc029-8420-4eae-adef-915bdc77e1dc}\(Default)
..\System\CurrentControlSet\Enum\root\legacy_winserverview\(Default)
..\System\CurrentControlSet\Services\WinServerView\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware