Program.Unwanted.1336

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

Malware Analysis of Program.Unwanted.1336 – FRAMEAPPLETHELPER.DLL

Created files:

%Program Files%\Auslogics\BoostSpeed\FileRecoveryHelper.dll
%Program Files%\Auslogics\BoostSpeed\FileShredder.exe
%Program Files%\Auslogics\BoostSpeed\FrameAppletHelper.dll
%Program Files%\Auslogics\BoostSpeed\FrameAppletHook.x32.dll
%Program Files%\Auslogics\BoostSpeed\FreeSpaceWiper.exe

Autostart registry keys:

HKLM\SOFTWARE\CLASSES\CLSID\{278029E0-2347-4254-A65E-204AC55E2508}\INPROCSERVER32\: “%SYSTEMDRIVE%\PROGRA~1\AUSLOG~1\BOOSTS~1\DISKDO~1.DLL”
HKLM\SOFTWARE\CLASSES\CLSID\{93469602-4134-4012-A6BC-D46FF1C671E9}\INPROCSERVER32\: “%SYSTEMDRIVE%\PROGRA~1\AUSLOG~1\BOOSTS~1\TASKMA~1.DLL”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1\DisplayName: “Auslogics BoostSpeed 8”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1\UninstallString: “”%Program Files%\Auslogics\BoostSpeed\unins000.exe””
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1\DisplayName: “Auslogics Registry Cleaner”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1\UninstallString: “”%Program Files%\Auslogics\Registry Cleaner\unins000.exe””
HKLM\System\CurrentControlSet\services\LavasoftTcpService\ImagePath: “%Program Files%\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe”
HKLM\System\CurrentControlSet\services\LavasoftTcpService\DisplayName: “LavasoftTcpService”
HKLM\System\CurrentControlSet\services\SearchProtectionService\ImagePath: “%Program Files%\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe”
HKLM\System\CurrentControlSet\services\SearchProtectionService\DisplayName: “IE Search Set”

Detected by UnHackMe:

FRAMEAPPLETHELPER.DLL
Default location: %PROGRAM FILES%\AUSLOGICS\BOOSTSPEED\FRAMEAPPLETHELPER.DLL

Dropper hash(md5): 3b96753b359f39cd915e801921a319fe

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera