Home / Spyware Encyclopedia / PSW.generic << Back

Recommendation to Automatically remove PSW.generic


Our products can remove PSW.generic and thousands of other Virus and Spyware automatically and instantly.

PSW.generic Details


  • Category PSW
  • Discovered 10/25/2024 4:12:15 PM
  • Modified 10/25/2024 5:51:41 PM
  • Threat Level Medium
  • Category Description
    This family of Trojans steals passwords, normally system passwords from victim machines. They search for system files which contain confidential information such as passwords and Internet access telephone numbers and then send this information to an email address coded into the body of the Trojan. The 'master' or user of the illegal program will then retrieve and misuse this information. Most common behavior: 1. Ask for password using fake window 2. Change ICQ, MSN and AOL configuration 3. Get cached Windows passwords

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
hz_sys_temtray.dll 802681  e2a83e9e24eeeb6ac366a7526effebf4 
220e8b2d.exe 4000  60827a2332f44fa01823f617d35cddd2 
ntsys.dll 384000  42036b34e0a580d690a1cd718533d0fe 
993b38c0.exe 3584  3ff22d0aeae7ce07e99f4fa4645a3e55 
e3fc1cb02a2e2315efdeac08a1ddc912.exe 851456 0.0.0.0e3fc1cb02a2e2315efdeac08a1ddc912 
38b631b20b1bae7b25bf672db582eafe.exe 574664Kaspersky Lab ZAO3.0.0.4138b631b20b1bae7b25bf672db582eafe 
eaf13f11d6a123f977aeb4bad274c1ce.exe 243712Emsisoft Ltd2017.8.0.7904eaf13f11d6a123f977aeb4bad274c1ce 
f0ac6ea2a5ba02ad31349102307f2a5c.exe 379392Xellsoft2.7.7f0ac6ea2a5ba02ad31349102307f2a5c 
4f18471b7e0fb5f4acb07780ff311130.vir.exe 205824(Personal) No company1.0.0.04f18471b7e0fb5f4acb07780ff311130 
b54fb9c0c113a7d58cafa3b672cb4ff1.exe 433152 43.23.1000.476b54fb9c0c113a7d58cafa3b672cb4ff1 

The following Registry Entries were created:
..\System\CurrentControlSet\Enum\root\legacy_winserverviewrs\(Default)
..\System\CurrentControlSet\Services\winserverviewrs\(Default)
..\Software\Classes\2ab429eb.mynshandler\(Default)
..\Software\Classes\Clsid\{e8cfc029-8420-4eae-adef-915bdc77e1dc}\(Default)
..\System\CurrentControlSet\Enum\root\legacy_winserverview\(Default)
..\System\CurrentControlSet\Services\WinServerView\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware