BSSTART.EXE – Worm Ainslot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BSSTART.EXE – Worm Ainslot removal

FileMD5Virus Alias
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Worm Ainslot
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Trojan Dropper.Generic7
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Trojan Generic
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Trojan Androm
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Trojan Downloader
BSSTART.EXE 331124d3f2eb605dc3b915d0af30b3c4 Trojan Buzus

BSSTART.EXE size: 195954 bytes
BSSTART.EXE hash: 331124D3F2EB605DC3B915D0AF30B3C4

Created files:

%AppData%\bsstart.exe
%AppData%\Java

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\run\winddxc: %WinDir%\System32\config\Systemprofile\Application Data\bsstart.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\winddxc: %WinDir%\System32\config\Systemprofile\Application Data\bsstart.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\winddxc: %WinDir%\System32\config\Systemprofile\Application Data\bsstart.exe

Detected by UnHackMe:

BSSTART.EXE
Default location: %APPDATA%\BSSTART.EXE

Dropper information:
MD5: 331124d3f2eb605dc3b915d0af30b3c4
File size: 195954 bytes

Leave a Reply