Is the file INSTALL_FLASH.EXE located on your computer? Then your computer is infected.
We do suggest you should remove INSTALL_FLASH.EXE from your computer as soon as possible.
INSTALL_FLASH.EXE is Trojan/Backdoor.
Kill the process INSTALL_FLASH.EXE and remove INSTALL_FLASH.EXE from the Windows startup.
Malware Analysis of INSTALL_FLASH.EXE
Full path on a computer: %Appdata%\install_flash.exe
Detected by UnHackMe:
Item Name: AdobeFlash
Author:
Current Setting: %APPDATA%\INSTALL_FLASH.EXE
Type: Registry Run
Removal Results: Success
Number of reboot: 1
INSTALL_FLASH.EXE is known as:
Trojan.Ransom.Blocker
INSTALL_FLASH.EXE hash:
- MD5: a57d590f8dd55e69546f6b13607e3a42
The file is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
How to quickly detect INSTALL_FLASH.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AdobeFlash: “%Appdata%\install_flash.exe”
Folders:
- C:\Twains_64
- C:\Twains_64\81397
Files:
- %Appdata%\flash.xpi
- %Appdata%\install_flash.exe
- C:\Twains_64\81397\background.js
- C:\Twains_64\81397\icon.png
- C:\Twains_64\81397\jquery-1.9.1.min.js
- C:\Twains_64\81397\manifest.json
- C:\Twains_64\81397\script.js