I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Swisyn
Also known as: Trojan Agent, Trojan Generic
SHA256: d4d63786b92ce024402c86a1f394a254086df3418aa8e57d0da4d94753a1f4a2
SHA1: b17a2cc5d0bc79c11b9090637150a5025f9ccb5c
MD5: 1bac1e42e56e1d3d1a9fac3fa0919c6e
File size: 318977 bytes
Created files:
%Program Files Common%\Services\csboyDVD.dll – Trojan Swisyn
%Program Files Common%\Services\csboyDvd.ocx – Trojan Swisyn
%Program Files Common%\Services\csboyTj.ocx – Trojan Swisyn
%Program Files Common%\Services\csboyTT.dll – Trojan Swisyn
%Program Files Common%\Tencent\services.exe – Trojan Swisyn
%Program Files Common%\Tencent\tuziboyAuTo.dll – Trojan Swisyn
%Program Files Common%\Tencent\tuziboyAuTo.ocx – Trojan Swisyn
%Program Files Common%\Tencent\tuziboyDw.ocx – Trojan Swisyn
%Temp%\new_hhh258.exe_E0CE4CB668B26FCF6526740CF49A3AF5B9E9FEB4.exe – Trojan Swisyn
Trojan Swisyn created autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ttplay: %Program Files Common%\Tencent\services.exe
HKLM\System\CurrentControlSet\Services\diskmanager\Type: 10000000
HKLM\System\CurrentControlSet\Services\diskmanager\Start: 02000000
HKLM\System\CurrentControlSet\Services\diskmanager\DisplayName: windows Disk Manager
HKLM\System\CurrentControlSet\Services\diskmanager\ImagePath: %Program Files Common%\Tencent\tuziboyAuTo.dll