Threat Database Trojans PWSteal.Lineage

PWSteal.Lineage

By CagedTech in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 57
First Seen: July 24, 2009
Last Seen: April 28, 2023
OS(es) Affected: Windows

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Panda Trj/Lineage.AHR
AVG PSW.Agent.BNK
Fortinet Lineage!tr.pws
Ikarus Trojan-PWS.Win32.Mefs
Sunbelt Trojan.Win32.Generic!BT
AhnLab-V3 Dropper/LineageHack.41537
Antiy-AVL Trojan/Win32.Agent
eTrust-Vet Win32/Lineage.HD
Sophos Mal/Packer
McAfee-GW-Edition Heuristic.BehavesLike.Win32.Packed.A
TrendMicro Mal_Lineage
AntiVir TR/PSW.Lineage.WO
Comodo Heur.Packed.Unknown
BitDefender Trojan.PWS.Lineage.KD
ClamAV Worm.Mytob-73

File System Details

PWSteal.Lineage may create the following file(s):
# File Name MD5 Detections
1. explorer.exe 4093f4a22f3862548770f75c0a426000 10
2. winlogin.exe d83e250ce2876d238e3808be0b61ec8f 4
3. kavo.exe 98e5f0a44aa0de7e1c1c9b602c76bff7 1
4. tavo1.dll fbdaff19d8020342444a4bd2511e7aa5 0
5. kavo0.dll, kavo1.dll 506e6de313748d3fa98b661f4180a855 0
6. tavo.exe edc7f5e1963dfc712864267f410ac3e8 0
7. kavo.exe 0777de449b4e5babae3a0d0835aa4597 0
8. tavo.exe c89ce6286fe7559a4ee0e68b9cfeeab8 0
9. cc[1].exe 34b066819d8d78e6744ae6f68accf7a9 0
10. tavo0.dll 73d482a7339a3a8ffe5ca1626d83b19f 0
11. kavo.exe 903215a4f03612686224698c0d05d9b4 0
12. ff[1].exe 11f0a5bbb8f58e6f2e186af84032373c 0
13. tavo.exe 64e1a4abbefc7ba7e80f5be21acd0ce5 0
14. cc[1].exe 91baf7aa8e72bde314231e3c3f10b24f 0
15. kavo0.dll, kavo1.dll 7e5143545189a7b4886d4d0cee3c4254 0
16. tavo.exe 551eb08b4f5898ba7ab554eb91b0a242 0
17. kavo.exe a44668c37d50b8ce98ad2e8901f54271 0
18. kavo1.dll c6a22ecc9535e766be80f22ba4d6600c 0
19. tavo0.dll 203885a80cf610e2896fe4293f2829b4 0
20. kavo0.dll 5e42032fe728e3dd70184b9cff3113ab 0
21. tavo.exe 7cd8e70a113f6960e57555c26741b378 0
22. kavo1.dll, kavo0.dll dba7d7a7315453e61dcb381c34612931 0
23. tavo0.dll dcd5be4f0c1ffe5d3803c7dd8f55f6aa 0
24. kavo.exe 2894da8f370c7f2e850ccec23307ed4e 0
25. kavo.exe 2bf5478c163b69736e47ff77a14807d4 0
26. xydll.dll 7bba97d1aae338bccffb88e09c0f7d4c 0
27. ztdll.dll d0df75b279b3c95cd976167623349262 0
More files

Registry Details

PWSteal.Lineage may create the following registry entry or registry entries:
File name without path
1[1].exe
Run keys
Newman
Tray

URLs

PWSteal.Lineage may call the following URLs:

orc10.com

Related Posts

Trending

Most Viewed

Loading...