Home / Spyware Encyclopedia / Proxy.Guzuloh << Back

Recommendation to Automatically remove Proxy.Guzuloh


Our products can remove Proxy.Guzuloh and thousands of other Virus and Spyware automatically and instantly.

Proxy.Guzuloh Details


  • Category Proxy
  • Discovered 5/13/2009 11:34:51 AM
  • Modified 8/11/2023 3:36:00 PM
  • Threat Level Medium
  • Category Description
    Proxy Trojan turns the victim's computer into a proxy server. This gives the attacker the opportunity to do everything from your computer, including the possibility of conducting credit card fraud and other illegal activities, or even to use system to launch malicious attacks against other networks.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Trojan-PSW.Win32.Lmir.lo.exe 74008 4.0.0.28f4f887921d1a8d9b585606e2ddf06e2f 
Trojan-PSW.Win32.Lmir.kz.exe 46138 1.0.0.250fc972570a6bcb6b239616c9d7f7d03d 
Trojan-PSW.Win32.Lmir.ls.dll 9424  f37c67d452190382f97f5a8c2f0fa129 
winsearch.exe 31232  bc83144c71377be28de8b813646e8894 
mwqu_32.dll 56320  93baaf8400e8549da79a24981a19a621 
mwqu_32.dll 57344  6c386bb4904c64332f8b0754aa0a9f6d 
mwqu_32.dll 56832  580bbb8860aeaffc203f4f410fc50bbb 
TROJAN-PSW.WIN32.LMIR.LT.dll 6844  0be77c7ee9361128657a8315b65b011a 
TROJAN-PSW.WIN32.LMIR.LF.dll 23760    
Trojan-PSW.Win32.Lmir.le.exe 41472  7e5335d1560365c85da5fdb47de9566614/02/2020

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"_rundlle"\"%WIN.SYS32%\TROJAN-PSW.WIN32.LMIR.LF.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Expatch"\"%WIN.SYS32%\TROJAN-PSW.WIN32.LMIR.LT.exe"
..\System\CurrentControlSet\Services\WinSock2\mssock\(Default)
..\Software\Classes\SysModule64.classname\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\shellexecutehooks\"{081FE200-A103-11D7-A46D-C770E4459F2F}"
..\Software\Classes\Clsid\{081FE200-A103-11D7-A46D-C770E4459F2F}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware