Worm Ainslot – Crpyt.exe – 177bbd1c81daf237ad1a9570c19f2ad0

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Ainslot
Also known as: Backdoor Blackshades, Trojan Jorik
SHA256: 606b133787f160eed0de1dad2064f5b868ef9ea711173272a1a091941e9ffe9c
SHA1: f7ea06637376c1aab4e3cf519bd3b4343c9d0102
MD5: 177bbd1c81daf237ad1a9570c19f2ad0
File size: 458752 bytes

Created files:

%AppData%\Crpyt.exe – Worm Ainslot

Worm Ainslot created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E81ACA8B-3E48-5BDD-828A-A1796FBBFBAC}\StubPath: %AppData%\Crpyt.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\run\WinDefender: %AppData%\Crpyt.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WinDefender: %AppData%\Crpyt.exe
HKCU\Software\Microsoft\Active Setup\Installed Components\{E81ACA8B-3E48-5BDD-828A-A1796FBBFBAC}\StubPath: %AppData%\Crpyt.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\WinDefender: %AppData%\Crpyt.exe

Leave a Reply