Infostealer_Blurax details

  • Description

    Infostealer.Blurax is a Trojan horse that logs keystrokes and steals confidential information from the compromised computer. The Trojan may use rootkit techniques to hide its presence on the compromised computer.

  • Exe

    percentSystempercentlueo.exe percentSystempercentsvvhosti.exe percentSystempercentsvvhost.exe

  • Registry

    HKEY_LOCAL_MACHINESoftwareMicrosoftActive SetupInstalled Components{78265AA7-CE86-A82E-2852-F9CAE8A97158}HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalHKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootNetworkHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesBlueOHKEY_LOCAL_MACHINESYSTEMControlSet001ServicesBlueOHKEY_LOCAL_MACHINESYSTEMControlSet003ServicesBlueOHKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_BLUEOHKEY_LOCAL_MACHINESYSTEMControlSet001EnumRootLEGACY_BLUEOHKEY_LOCAL_MACHINESYSTEMControlSet003EnumRootLEGACY_BLUEOHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicessvvhostHKEY_LOCAL_MACHINESYSTEMControlSet001ServicessvvhostHKEY_LOCAL_MACHINESYSTEMControlSet003ServicessvvhostHKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_SVVHOSTHKEY_LOCAL_MACHINESYSTEMControlSet001EnumRootLEGACY_SVVHOSTHKEY_LOCAL_MACHINESYSTEMControlSet003EnumRootLEGACY_SVVHOSTHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesBlueODrvHKEY_LOCAL_MACHINESYSTEMControlSet001ServicesBlueODrvHKEY_LOCAL_MACHINESYSTEMControlSet003ServicesBlueODrvHKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_BLUEODRVHKEY_LOCAL_MACHINESYSTEMControlSet001EnumRootLEGACY_BLUEODRVHKEY_LOCAL_MACHINESYSTEMControlSet003EnumRootLEGACY_BLUEODRV