Win32.downloader.gen Description

Win32.downloader.gen is a Trojan downloader that propagates to targeted PCs with the help of social engineering. Win32.downloader.gen will strive to control and induce a victim to carry out an action or to reveal private details inadvertently or against his/her will. Win32.downloader.gen can also circulate via spam email messages carrying malevolent attachments. Win32.downloader.gen can distribute other malware infections to the corrupted PC. While being installed, Win32.downloader.gen makes system changes by dropping and executing harmful files. Win32.downloader.gen can grab confidential information, incorporating running Windows version on the compromised PC.

Do You Suspect Your PC May Be Infected with Win32.downloader.gen & Other Threats? Scan Your PC with SpyHunter

SpyHunter is a powerful malware remediation and protection tool designed to help provide PC users with in-depth system security analysis, detection and removal of a wide range of threats like Win32.downloader.gen as well as a one-on-one tech support service. Download SpyHunter's FREE Malware Remover
Note: SpyHunter's scanner is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware removal tool to remove the malware threats. Read more on SpyHunter. Free Remover allows you to run a one-off scan and receive, subject to a 48-hour waiting period, one remediation and removal. Free Remover subject to promotional details and Special Promotion Terms. To understand our policies, please also review our EULA, Privacy Policy and Threat Assessment Criteria. If you no longer wish to have SpyHunter installed on your computer, follow these steps to uninstall SpyHunter.

Security Doesn't Let You Download SpyHunter or Access the Internet?

Solutions: Your computer may have malware hiding in memory that prevents any program, including SpyHunter, from executing on your computer. Follow to download SpyHunter and gain access to the Internet:
  • Use an alternative browser. Malware may disable your browser. If you're using IE, for example, and having problems downloading SpyHunter, you should open Firefox, Chrome or Safari browser instead.
  • Use a removable media. Download SpyHunter on another clean computer, burn it to a USB flash drive, DVD/CD, or any preferred removable media, then install it on your infected computer and run SpyHunter's malware scanner.
  • Start Windows in Safe Mode. If you can not access your Window's desktop, reboot your computer in "Safe Mode with Networking" and install SpyHunter in Safe Mode.
  • IE Users: Disable proxy server for Internet Explorer to browse the web with Internet Explorer or update your anti-spyware program. Malware modifies your Windows settings to use a proxy server to prevent you from browsing the web with IE.
If you still can't install SpyHunter? View other possible causes of installation issues.

Technical Information

File System Details

Win32.downloader.gen creates the following file(s):
# File Name
1 C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
2 C:\Windows\system32\lsm.exe
3 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
4 C:\Windows\system32\SLsvc.exe
5 C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
6 C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe
7 C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
8 C:\Program Files\Creative\Volume Panel\VolPanlu.exe
9 C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
10 C:\Windows\system32\dmwu.exe
11 C:\Windows\system32\WebUpdateSvc4.exe
12 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
13 C:\Windows\system32\Dwm.exe
14 C:\Program Files\Windows Media Player\wmpnscfg.exe
16 C:\Program Files\iPod\bin\iPodService.exe
17 C:\Program Files\Microsoft Security Client\msseces.exe
18 C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
19 C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
20 C:\Program Files\Google\Chrome\Application\chrome.exe
21 C:\Windows\system32\SearchFilterHost.exe
22 C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
23 C:\Windows\system32\vssvc.exe
24 c:\Program Files\Microsoft Security Client\MsMpEng.exe
25 C:\Windows\system32\wininit.exe
26 C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
27 C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
28 C:\Windows\System32\spoolsv.exe
29 C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
30 C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
31 C:\Windows\system32\taskeng.exe
32 C:\Program Files\Verizon\McciTrayApp.exe
33 C:\Windows\System32\Ctxfihlp.exe
34 C:\Windows\system32\lxbccoms.exe
35 C:\Windows\system32\SearchIndexer.exe
36 c:\Program Files\Microsoft Security Client\NisSrv.exe
37 C:\Windows\System32\jmdp\stij.exe
38 C:\Program Files\Garmin\Express Tray\ExpressTray.exe
39 C:\Windows\ehome\ehsched.exe
40 C:\Windows\ehome\ehRecvr.exe
41 C:\Program Files\iTunes\iTunesHelper.exe
42 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
43 C:\Program Files\Skype\Phone\Skype.exe
44 C:\Windows\system32\SearchProtocolHost.exe
45 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
46 C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
47 C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
48 C:\Program Files\Creative\Shared Files\CTAudSvc.exe
49 C:\Windows\system32\nvvsvc.exe
50 C:\Program Files\Bonjour\mDNSResponder.exe
51 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
52 C:\Program Files\Common Files\Motive\McciCMService.exe
53 C:\Program Files\Sling Media\SlingAgent\SlingAgentService.exe
54 C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
55 C:\Windows\WindowsMobile\wmdcBase.exe
56 C:\Program Files\Google\Update\\GoogleCrashHandler.exe
57 C:\Program Files\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe
58 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
59 C:\Windows\System32\WUDFHost.exe
60 C:\Windows\Explorer.EXE
61 C:\Program Files\Windows Media Player\wmpnetwk.exe
62 C:\Windows\ehome\ehmsas.exe
63 C:\Windows\System32\mobsync.exe
64 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
65 C:\Windows\ehome\ehtray.exe
66 C:\Program Files\Google\Drive\googledrivesync.exe
67 C:\Users\GregAdmin\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
68 C:\Windows\system32\wbem\wmiprvse.exe
69 C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
70 C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
71 C:\Windows\system32\svchost.exe -k GPSvcGroup
72 C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
73 C:\Windows\System32\svchost.exe -k WerSvcGroup
74 C:\Windows\System32\svchost.exe -k swprv
75 C:\Windows\system32\svchost.exe -k rpcss
76 C:\Windows\system32\svchost.exe -k netsvcs
77 C:\Windows\system32\svchost.exe -k NetworkService
78 C:\Windows\system32\svchost.exe -k imgsvc
79 C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
80 C:\Windows\system32\svchost.exe -k DcomLaunch
81 C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
82 C:\Windows\system32\svchost.exe -k LocalService
83 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
84 C:\Windows\system32\svchost.exe -k WindowsMobile

Site Disclaimer is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their PC with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your PC. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.