Threat Search: 

ThreatExpert's Statistics for Generic PWS.d [McAfee]:

Generic PWS.d [McAfee] is also known as:
Threat AliasNumber of Incidents
Trojan.Onlinegames.Gen!Pac.73 [PC Tools]35
Infostealer.Gampass [Symantec]17
TROJ_AGENT.NS [Trend Micro]16
Trojan Horse [Symantec]16
Trojan-PWS.OnlineGames.ARun [PC Tools]10
VirTool:Win32/Vanti.gen!D [Microsoft]10
Mal/EncPk-CE [Sophos]9
Trojan.Win32.Inject.r [Kaspersky Lab]9
Rootkit.Win32.Agent.sl [Kaspersky Lab]8
TSPY_NSANTI.GA [Trend Micro]8
Downloader [Symantec]4
Rootkit.Win32.Agent.qw [Kaspersky Lab]4
Rootkit.Win32.Vanti.gv [Ikarus]4
Trojan.PWS.OnLineGames.BJU [PC Tools]4
Trojan-PSW.Win32.OnLineGames.rbs [Kaspersky Lab]4
Trojan-PWS.OnlineGames.KVB [PC Tools]4
TSPY_ONLINEG.FHT [Trend Micro]4
Infostealer.Bancos [Symantec]3
Mal/Banspy-F [Sophos]3
TSPY_GAMPASS.BV [Trend Micro]3
Hacktool.Rootkit [Symantec]2
Mal/Generic-A [Sophos]2
PWS:Win32/OnLineGames.COD [Microsoft]2
Trojan-PSW.Win32.OnLineGames.gla [Kaspersky Lab]2
Trojan-PSW.Win32.OnLineGames.nfi [Kaspersky Lab]2
Trojan-PSW.Win32.OnLineGames.nhm [Kaspersky Lab]2
Mal/EncPk-CE, Mal/EncPk-AH [Sophos]1
Packed.Win32.NSAnti.r [Kaspersky Lab]1
Rootkit.Win32.Agent.re [Kaspersky Lab]1
Rootkit.Win32.Vanti.hf [Kaspersky Lab]1
TROJ_AGENT.QT [Trend Micro]1
TROJ_NSPM.AOZ [Trend Micro]1
TROJ_NSPM.AQX [Trend Micro]1
TROJ_NSPM.XT [Trend Micro]1
Trojan.OnlineGames.BUA [PC Tools]1
Trojan.Win32.Agent.csnz [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.ccl [Kaspersky Lab]1
TrojanSpy:Win32/Bancos.OE [Microsoft]1
TrojanSpy:Win32/Bancos.OI [Microsoft]1
TSPY_GAMPASS.BZ [Trend Micro]1
TSPY_LEGMIR.CNR [Trend Micro]1
TSPY_LINEAGE.IAN [Trend Micro]1
TSPY_ONLINEG.CSM [Trend Micro]1
TSPY_ONLINEG.MAO [Trend Micro]1
TSPY_ONLINEG.PHW [Trend Micro]1
TSPY_ONLINEG.PQD [Trend Micro]1
TSPY_PACEX.AH [Trend Micro]1
Virus.Win32.Onlinegames.BDK [Ikarus]1
Win-Trojan/KorGameHack.30226 [AhnLab]1

Generic PWS.d [McAfee] has the following possible country of origin:
OriginNumber of Incidents
Brazil3

Generic PWS.d [McAfee] is known to be created as:
%System%\kavo.exe
%Temp%\adv.dll
%Temp%\aj98zmk2.dll
%Temp%\ak.dll
%Temp%\an4atd.dll
%Temp%\b7.dll
%Temp%\cqqddn2.dll
%Temp%\ebpf.dll
%Temp%\f9v.dll
%Temp%\h7a4dt5.dll
%Temp%\hrvo.dll
%Temp%\l87.dll
%Temp%\lqae.dll
%Temp%\pbfarh.dll
%Temp%\rjoj.dll
%Temp%\taso.exe
%Temp%\taso1.dll
%Temp%\tfog.dll
%Temp%\tkq.dll
%Temp%\vupin8b.dll
%Temp%\w.dll
%Temp%\whyghu.dll
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).