Troj/Spynov-Gen is a family of Trojans for the Windows platform.

When run, members of Troj/Spynov-Gen will typically copy themselves to the Windows folder as wdfmgr.exe.

Windows\wdfmgr.exe

The Trojans install themselves as a service, setting the following registry entries:

HKLM\SYSTEM\ControlSet001\Services\wdfmgr
DisplayName
WDF Manager

ImagePath
Windows\wdfmgr.exe

More information can be found at this Sophos page.