Threat Search: 

ThreatExpert's Statistics for Troj/PSW-HE [Sophos]:

Troj/PSW-HE [Sophos] is also known as:
Threat AliasNumber of Incidents
Generic Dropper.eb [McAfee]886
Infostealer.Gampass [Symantec]757
Trojan-PWS.Win32.LdPinch [Ikarus]656
Troj/Lineag-BG [Sophos]315
Trojan-GameThief.Win32.Magania.bfrp [Kaspersky Lab]201
Trojan-Dropper.Win32.Agent.ayqa [Kaspersky Lab]171
Trojan-GameThief.Win32.Magania.bwsr [Kaspersky Lab]170
Trojan-GameThief.Win32.Magania.bful [Kaspersky Lab]168
Win-Trojan/Magania.24672 [AhnLab]163
Win-Trojan/Magania.27252 [AhnLab]97
Trojan-PSW.Gampass [PC Tools]63
Trojan-GameThief.Win32.Magania.bwyr [Kaspersky Lab]56
Trojan-GameThief.Win32.Magania.bwsi [Kaspersky Lab]51
Win-Trojan/Magania.30340 [AhnLab]42
Trojan-GameThief.Win32.Magania.biht [Kaspersky Lab]40
Win-Trojan/Magania.7384.G [AhnLab]38
Win-Trojan/Magania.23162 [AhnLab]35
Win-Trojan/Magania.7407.C [AhnLab]31
Win-Trojan/Magania.7034.B [AhnLab]29
Trojan-GameThief.Win32.Magania.bkii [Kaspersky Lab]27
Win-Trojan/OnlineGameHack.27748.B [AhnLab]27
Win-Trojan/OnlineGameHack.26216.D [AhnLab]24
Win-Trojan/OnlineGameHack.27250 [AhnLab]24
Trojan-GameThief.Win32.Magania.cbws [Kaspersky Lab]20
Win-Trojan/Magania.28777 [AhnLab]20
Trojan-GameThief.Win32.Magania.bwxz [Kaspersky Lab]18
Dropper/OnlineGameHack.29828 [AhnLab]16
Dropper/Agent.22733 [AhnLab]15
Mal/Generic-A [Sophos]15
Trojan-GameThief.Win32.OnLineGames.bmtc [Kaspersky Lab]15
Win-Trojan/Magania.26726.C [AhnLab]14
Dropper/OnlineGameHack.26736 [AhnLab]13
Win-Trojan/Magania.23171 [AhnLab]12
Win-Trojan/OnlineGameHack.25209.H [AhnLab]12
Dropper/Agent.21520.D [AhnLab]9
Dropper/Agent.25616.J [AhnLab]9
Win-Trojan/Magania.7409 [AhnLab]9
Win-Trojan/OnlineGameHack.25616.I [AhnLab]9
Win-Trojan/OnlineGameHack.27782 [AhnLab]9
Dropper/Agent.30224.F [AhnLab]8
Win-Trojan/InfoStealer.27152 [AhnLab]8
Win-Trojan/OnlineGameHack.29829 [AhnLab]8
Dropper/Agent.8824 [AhnLab]7
Trojan.Dropper [Symantec]6
Win-Trojan/Magania.26741 [AhnLab]6
Win-Trojan/OnlineGameHack.27243.C [AhnLab]6
Dropper/Agent.25616.B [AhnLab]5
Trojan.Dropper [PC Tools]5
Trojan-GameThief.Win32.Magania [Ikarus]5
Trojan-GameThief.Win32.Magania.bfdq [Kaspersky Lab]5
Trojan-GameThief.Win32.Magania.cmsr [Kaspersky Lab]5
Win-Trojan/Magania.23152.C [AhnLab]5
Dropper/Agent.25616.K [AhnLab]4
Dropper/Agent.27152.L [AhnLab]4
Dropper/Malware.31248.E [AhnLab]4
Dropper/OnlineGameHack.25616.C [AhnLab]4
Dropper/OnlineGameHack.27782 [AhnLab]4
Win-Trojan/OnlineGameHack.27238.F [AhnLab]4
Win-Trojan/OnlineGameHack.27249.B [AhnLab]4
Win-Trojan/OnlineGameHack.27250.C [AhnLab]4
Win-Trojan/OnlineGameHack.28176.F [AhnLab]4
Dropper/Agent.30736.G [AhnLab]3
Win-Trojan/OnlineGameHack.24161 [AhnLab]3
Win-Trojan/OnlineGameHack.27152.M [AhnLab]3
Win-Trojan/OnlineGameHack.27251.C [AhnLab]3
Win-Trojan/OnlineGameHack.29200.I [AhnLab]3
Win-Trojan/OnlineGameHack.30224.I [AhnLab]3
Dropper/Agent.24592.F [AhnLab]2
Trojan-PSW.Win32.LdPinch.afts [Kaspersky Lab]2
Win-Trojan/Magania.26244.D [AhnLab]2
Win-Trojan/Magania.27243.B [AhnLab]2
Win-Trojan/Magania.7036 [AhnLab]2
Win-Trojan/OnlineGameHack.23690 [AhnLab]2
Win-Trojan/OnlineGameHack.23832.C [AhnLab]2
Win-Trojan/OnlineGameHack.9595.B [AhnLab]2
Dropper/Agent.21520.E [AhnLab]1
Dropper/Agent.24592.G [AhnLab]1
Dropper/Agent.25616.F [AhnLab]1
Dropper/Agent.25616.H [AhnLab]1
Dropper/Agent.25616.R [AhnLab]1
Dropper/Agent.27152.BP [AhnLab]1
Dropper/Agent.27152.CI [AhnLab]1
Dropper/Agent.27152.F [AhnLab]1
Dropper/Agent.27152.J [AhnLab]1
Dropper/Agent.29200 [AhnLab]1
Dropper/Agent.30224.P [AhnLab]1
Dropper/Agent.31248.B [AhnLab]1
Dropper/Malware.27152.G [AhnLab]1
Dropper/OnlineGameHack.25313 [AhnLab]1
Trojan-GameThief.Win32.Magania.bdyj [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.beaa [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bfdf [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bffe [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bfgu [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bfwc [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bfws [Kaspersky Lab]1
Trojan-GameThief.Win32.Magania.bjnh [Kaspersky Lab]1
Trojan-PSW.Win32.LdPinch.afvj [Kaspersky Lab]1
Trojan-PSW.Win32.LdPinch.afvp [Kaspersky Lab]1
Trojan-PSW.Win32.LdPinch.agma [Kaspersky Lab]1

Troj/PSW-HE [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China625
United Kingdom1

Troj/PSW-HE [Sophos] is known to be created as:
%System%\malware\malware\a0292fa.exe
%Temp%\090612-3-0.exe
%Temp%\235781_xeex.exe
%Temp%\237750_xeex.exe
%Temp%\259343_xeex.exe
%Temp%\8..exe
%Temp%\9..exe
%Temp%\aa10.exe
%Temp%\aa11.exe
%Temp%\aa12.exe
%Temp%\aa13.exe
%Temp%\aa14.exe
%Temp%\aa15.exe
%Temp%\aa16.exe
%Temp%\aa17.exe
%Temp%\aa18.exe
%Temp%\aa19.exe
%Temp%\aa20.exe
%Temp%\aa21.exe
%Temp%\aa22.exe
%Temp%\aa23.exe
%Temp%\aa26.exe
%Temp%\aa27.exe
%Temp%\aa30.exe
%Temp%\aa31.exe
%Temp%\aa9.exe
%Temp%\e236421t.exe
%Temp%\e236656t.exe
%Temp%\e240343t.exe
%Temp%\e240437t.exe
%Temp%\e242000t.exe
%Temp%\e242078t.exe
%Temp%\e242125t.exe
%Temp%\e242281t.exe
%Temp%\e243484t.exe
%Temp%\e247093t.exe
%Temp%\e248296t.exe
%Temp%\e249281t.exe
%Temp%\e250187t.exe
%Temp%\e251046t.exe
%Temp%\e256031t.exe
%Temp%\e258375t.exe
%Temp%\e284046t.exe
%Windir%\temp\240828_xeex.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.