PARTAGER
CELA SUR

Facebook Twitter Google Plus

Trojan.Swizzor.DH

MOYEN
TRÈS FAIBLE
10 KB
()

Symptômes 

Presence of registry key:
HKEY_CURRENT_USER\Software\warn surf bagsWay

HTTP download activity.

Consignes de suppression :

Please let BitDefender delete files found infected.

Analysé par

Mihai Neagu, virus researcher

Description technique

The trojan usually comes from some web sites that contain adware content.

It downloads and installs adware applications from http://bins.lop.com/.

It may create registry key and subkeys in:
HKEY_CURRENT_USER\Software\warn surf bagsWay

Also it may launch Internet Explorer and go to certain websites for visiting purposes.

The downloader may be also detected as Memscan:Trojan.Swizzor.DH or Trojan.Downloader.Swizzor.DH.