Home / Spyware Encyclopedia / Proxy.Lamb << Back

Recommendation to Automatically remove Proxy.Lamb


Our products can remove Proxy.Lamb and thousands of other Virus and Spyware automatically and instantly.

Proxy.Lamb Details


  • Category Proxy
  • Discovered 5/13/2009 11:35:00 AM
  • Modified 7/6/2020 2:38:47 PM
  • Threat Level High
  • Category Description
    Proxy Trojan turns the victim's computer into a proxy server. This gives the attacker the opportunity to do everything from your computer, including the possibility of conducting credit card fraud and other illegal activities, or even to use system to launch malicious attacks against other networks.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Trojan-PSW.Win32.Lmir.rz.dll 16896Freezerware freeware2.0.0.076f447c4a60d3c242c531c2d0bcaa465 
Trojan-PSW.Win32.Lmir.sl.exe 180739 1.0.0.259d7207f5946c3d7175ed9bc8743c2309 
TROJAN-PSW.WIN32.LMIR.SA.dll 6352  fa70e19e8ca338f26987f44cab852ecb 
Trojan-PSW.Win32.Lmir.ry.exe 53248  f513fd616bd0e7c7018bf6b46f8e5d3d 
internot.EXE 53248  f513fd616bd0e7c7018bf6b46f8e5d3d 
Trojan-PSW.Win32.Lmir.sb.exe 38588  e8d33b5c32d7b0a137591acc9b54eac3 
sysmodule64.dll 67072  dd87c93365c5340093d75b213217a4b1 
Trojan-PSW.Win32.Lmir.sn.dll 11776  da04d8d8da56b3782d5f3e90e75d8e50 
TROJAN-PSW.WIN32.LMIR.SM.dll 5632  d18f831cb3d45bd40be4466bda8cd63e 
cqdll.dll 56320  ad7107b25dc890033f93216e63792cf9 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"internot.EXE"\"internot.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"a_rundlla.3"\"%WIN.SYS32%\TROJAN-PSW.WIN32.LMIR.SA.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Ntech.patchs"\"%WIN.SYS32%\TROJAN-PSW.WIN32.LMIR.SM.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Microsoft windows"\"%WIN%\systemwin.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Microsoft Windows32"\"%WIN%\system32win.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Microsoft Internet"\"%WIN%\Internet.exe"
..\Software\Classes\SysModule64.classname\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\"{081FE200-A103-11D7-A46D-C770E4459F2F}"\"hookmir"
..\Software\Classes\Clsid\{081FE200-A103-11D7-A46D-C770E4459F2F}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware