Trojan Downloader.Generic – csboyDVD.dll – 86732cc4d3ccb7fd1e5710403dea9e5b

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Downloader.Generic
Also known as: Trojan Generic, Trojan Swisyn
SHA256: eb7500f79b8f6a342125e711bb2f309b388ae7eab54a9b34db36230a69bc9d0b
SHA1: 77105a9539651cbe63b86e57513fa067b8937fb9
MD5: 86732cc4d3ccb7fd1e5710403dea9e5b
File size: 306176 bytes

Created files:

%Program Files Common%\Services\csboyDVD.dll – Trojan Downloader.Generic
%Program Files Common%\Services\csboyDvd.ocx – Trojan Downloader.Generic
%Program Files Common%\Services\csboyTj.ocx – Trojan Downloader.Generic
%Program Files Common%\Services\csboyTT.dll – Trojan Downloader.Generic
%Program Files Common%\Tencent\services.exe – Trojan Downloader.Generic
%Program Files Common%\Tencent\tuziboyAuTo.dll – Trojan Downloader.Generic
%Program Files Common%\Tencent\tuziboyAuTo.ocx – Trojan Downloader.Generic
%Program Files Common%\Tencent\tuziboyDw.ocx – Trojan Downloader.Generic
%Temp%\new_hz.exe_B652B9CC67B9AC57901BCE4A57CB062CCAA85B86.exe – Trojan Downloader.Generic

Trojan Downloader.Generic created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ttplay: %Program Files Common%\Tencent\services.exe
HKLM\System\CurrentControlSet\Services\diskmanager\Type: 10000000
HKLM\System\CurrentControlSet\Services\diskmanager\Start: 02000000
HKLM\System\CurrentControlSet\Services\diskmanager\DisplayName: windows Disk Manager
HKLM\System\CurrentControlSet\Services\diskmanager\ImagePath: %Program Files Common%\Tencent\tuziboyAuTo.dll

Leave a Reply