Trojan Swisyn – lsass.exe – f536047a1fb17b7a962f0ae91cb8f838

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Swisyn
Also known as: Trojan Eldorado, Trojan Comroki
SHA256: 8d21cb631c8caf7f62f60bbb7c77fed05a698a6a9084478dc8fd00e946826ba6
SHA1: a9ec77b45a43af41ed1f19331021378771df7274
MD5: f536047a1fb17b7a962f0ae91cb8f838
File size: 212992 bytes

Created files:

%AppData%\Microsoft\lsass.exe – Trojan Swisyn

Trojan Swisyn created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: C:\Windows\System32\userinit.exe,%AppData%\Microsoft\lsass.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe

Leave a Reply