BKDR_PLUGX.SME

By Sumo3000 in Backdoors | 13 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
More... More

BKDR_PLUGX.SME Description

BKDR_PLUGX.SME is a backdoor Trojan that spreads on the web while via dangerous websites. BKDR_PLUGX.SME can also proliferate with the help of other malware infections. BKDR_PLUGX.SME is a remote access tool (RAT) identified as PlugX. BKDR_PLUGX.SME is one of the most common malware infections used in executing targeted attacks directed towards Japanese government institutions. After execution, BKDR_PLUGX.SME erases itself. BKDR_PLUGX.SME adds potentially infectious files.

Type: Backdoors

How Can You Detect BKDR_PLUGX.SME?

BKDR_PLUGX.SME Removal Details

BKDR_PLUGX.SME has typically the following processes in memory:

  • %All Users Profile%\Gf\NvSmartMax.dll
  • %User Profile%\UdpGf\NvSmart.exe
  • %User Profile%\UdpGf\NvSmartMax.dll
  • %All Users Profile%\Gf\NvSmart.exe

BKDR_PLUGX.SME creates the following files in the system:

  • %All Users Profile%\Gf\boot.ldr
  • %User Profile%\UdpGf\NvSmart.usr

BKDR_PLUGX.SME creates the following registry entries:

  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FAST CLSID = “{RANDOM VALUES}”
  • HKEY_LOCAL_MACHINE\Software\CLASSES\FAST

Important Article Disclaimer

ESG Support Center

This entry was last updated on 09/21/12 and posted on 09/21/12. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.