Trojan-PSW.Win32.Stealer.ctwu


Detection added: 15.10.2025 23:37:56 (GMT+2)
MD5: F4BEA9B53A68F324BA76E3F3D5283B63
SHA1: 8571B6C739EF84A7D39AF2FA3DDF5659A3817BE2
Behavior: Trojan Program (Trojan password stealers) Trojan-PSW are trojans designed to steal passwords, user login and other confidential data from infected computers without using keystroke logging. Such trojans have means to extract passwords from the files used by applications to store them.
When launched, a Trojan PSW searches system files which store a range of confidential data or the registry.


Platform: This malware is the Portable Executable (PE) format (is a file format for executables, object code, DLLs, FON Font files, and others used in 32-bit and 64-bit versions of Windows operating systems).

Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP, Windows Vista, Windows 7 (x86/x64), Windows 8 (x86/x64), Windows 10 (x86/x64), Windows 11 (x86/x64)


NOTE: The hash is only listed for the first detected malicious file. SHA/MD5 hash should not be intended as a security/antivirus solution, instead it provides you an additional information, allowing you to identify known malware files.
Learn more about:
 Latest threats
 Nicta Anti-Virus Engine (SDK)
 Anti-Malware Digital Patrol
 Anti-Virus Cloud Engine

Take the following steps to help prevent infection on your computer:
  • Use up-to-date antivirus software.
  • Get the latest updates for Operating system and your installed software.
  • Use strong passwords and password management software.
  • Use caution when opening attachments, accepting file transfers and clicking on links to webpages.