Trojan-PSW.Win32.Lumma.knh
Detection added: 26.06.2025 02:12:34 (GMT+2)
MD5: 5790E6FEBFC438A0F3F02E099A5269F9
SHA1: 5BB15D6F1B3C43955C47916BA0668FE6B4F31203
Behavior: Trojan Program (Trojan password stealers) Trojan-PSW are trojans designed to steal passwords, user login and other confidential data from infected computers without using keystroke logging. Such trojans have means to extract passwords from the files used by applications to store them. MD5: 5790E6FEBFC438A0F3F02E099A5269F9
SHA1: 5BB15D6F1B3C43955C47916BA0668FE6B4F31203
When launched, a Trojan PSW searches system files which store a range of confidential data or the registry.
Platform: This malware is the Portable Executable (PE) format (is a file format for executables, object code, DLLs, FON Font files, and others used in 32-bit and 64-bit versions of Windows operating systems).
Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP, Windows Vista, Windows 7 (x86/x64), Windows 8 (x86/x64), Windows 10 (x86/x64), Windows 11 (x86/x64)
NOTE: The hash is only listed for the first detected malicious file. SHA/MD5 hash should not be intended as a security/antivirus solution, instead it provides you an additional information, allowing you to identify known malware files.
Learn more about:




Take the following steps to help prevent infection on your computer:
- Use up-to-date antivirus software.
- Get the latest updates for Operating system and your installed software.
- Use strong passwords and password management software.
- Use caution when opening attachments, accepting file transfers and clicking on links to webpages.