Worm Ainslot – Fraps-3.5.9.exe – b6d8b84dadb80cf9f42542821955f168

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Ainslot
Also known as: Backdoor Blackshades, Worm Shakblades
SHA256: 2917e3995a68d6b3ccd4d0f92a779bc3d42a5620140bb3385553b730f9024a3d
SHA1: 56a12a00026aed89d58b694494f674349ca0c31f
MD5: b6d8b84dadb80cf9f42542821955f168
File size: 831488 bytes

Created files:

%AppData%\Windows Defender\Fraps-3.5.9.exe – Worm Ainslot

Worm Ainslot created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{18D0D3EB-AEE2-ADCF-1E8F-1EDC7EED73DE}\StubPath: %AppData%\Windows Defender\Fraps-3.5.9.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\run\ConvectServiceSystem: %AppData%\Windows Defender\Fraps-3.5.9.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ConvectServiceSystem: %AppData%\Windows Defender\Fraps-3.5.9.exe
HKCU\Software\Microsoft\Active Setup\Installed Components\{18D0D3EB-AEE2-ADCF-1E8F-1EDC7EED73DE}\StubPath: %AppData%\Windows Defender\Fraps-3.5.9.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ConvectServiceSystem: %AppData%\Windows Defender\Fraps-3.5.9.exe

Leave a Reply