psysnew.exe
Confused with the file psysnew.exe? Do you know what is psysnew.exe and how to remove psysnew.exe? Is psysnew.exe is harmful?
psysnew.exe sample submitted on 2010-04-24 and identified as a threat.
Alias:
Threat File:psysnew.exe
Submit time:2010-04-24
Excute time:1 min 59 sec
Level of Spread:5
Level of Threat:1
type:not-a-virus:AdTool.Win32
Filesize:97K Bytes
Files type
psysnew.exe is Windows exe file.
MD5:833wvqX7Bxmq0lu2xrjEDY8u0FN6aMCo
SHA1..:26Rf18yCj25rI41Pgt6MlaH1KnvA3tk5OBs4422k
Path:
C:\Documents and Settings\All Users\Application Data\psysnew.exe
C:\Documents and Settings\All Users\Application Data\psysnew.exe
E:\System Volume Information\ \psysnew.exe
Report Countries:
Russian
Portugal
Czech
Japan
Singapore
Antivirus Program Report:
F-Secure :AdWare.Win32.SuperJuan.cfg
G-Data:Trojan-Downloader.Win32.Agent.agtk
Duba:Trojan-Spy.Win32.Agent.eov
McAfee :Trojan.Patch.F
Sunbelt Software :Backdoor.Win32.Agent.lqe
Need help? Post you problem on Free Malware Remove Help forum
psysnew.exe Summary
1.Temporarily Disable System Restore;2.Reboot computer in SafeMode;3.delte psysnew.exe virus files and kill psysnew.exe file task process(if have);4.Delete/Modify any values added to the registry by psysnew.exe ;5.delete IE temp files,restart the computer and run a whole scan with Panda, Vexira. psysnew.exe virus files as following:
Hi.
I’ve windows vista. Every time I turn on my laptop, the first thing that comes is psysnew properties. It contains a button called “Restore”. Though I do update my OS, but every now n then I get a message “windows explorer has stopped working” “Task scheduler has stopped working”. Is it because of psysnew..?? What shall I do ?
From your description is hard to know the real problem is. Maybe you need post your log here to decide the problem.
I had the exact same problem. Psysnew.exe was not found in the system but that property window kept appearing. You’ll notice the following key diplayed in the properties window:
S-1-5-21-0243556031-888888379-781863308-1455
Run the regedit command to enter the registry editor and search the key S-1-5-21-0243556031-888888379-781863308-1455 and delete it from the registry.