Trojan-PSW.Win32.Lumma.qku


Detection added: 15.10.2025 14:00:13 (GMT+2)
MD5: C0EFAD9F0732C463253B36F7E5C3CB83
SHA1: 9E2C0AAF3946B71449C5EF27D0D71B6D4A1A3F20
Behavior: Trojan Program (Trojan password stealers) Trojan-PSW are trojans designed to steal passwords, user login and other confidential data from infected computers without using keystroke logging. Such trojans have means to extract passwords from the files used by applications to store them.
When launched, a Trojan PSW searches system files which store a range of confidential data or the registry.


Platform: This malware is the Portable Executable (PE) format (is a file format for executables, object code, DLLs, FON Font files, and others used in 32-bit and 64-bit versions of Windows operating systems).

Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP, Windows Vista, Windows 7 (x86/x64), Windows 8 (x86/x64), Windows 10 (x86/x64), Windows 11 (x86/x64)


NOTE: The hash is only listed for the first detected malicious file. SHA/MD5 hash should not be intended as a security/antivirus solution, instead it provides you an additional information, allowing you to identify known malware files.
Learn more about:
 Latest threats
 Nicta Anti-Virus Engine (SDK)
 Anti-Malware Digital Patrol
 Anti-Virus Cloud Engine

Take the following steps to help prevent infection on your computer:
  • Use up-to-date antivirus software.
  • Get the latest updates for Operating system and your installed software.
  • Use strong passwords and password management software.
  • Use caution when opening attachments, accepting file transfers and clicking on links to webpages.