Threat Database Trojans Win32/Pluzoks

Win32/Pluzoks

By SpideyMan in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 28
First Seen: March 14, 2012
Last Seen: March 24, 2020
OS(es) Affected: Windows

Win32/Pluzoks is a Trojan that surreptitiously drops additional arbitrary files without a computer user's permission. Win32/Pluzoks makes system changes that specify its occurrence on the targeted machine. Win32/Pluzoks also modifies the Windows registry so that it can launch every time you turn your computer on. Win32/Pluzoks is dropped by other malware infection. Win32/Pluzoks may contact a remote server for downloading its updates. Win32/Pluzoks reads a web file, for instance, 'update.php' to get URL data. Delete Win32/Pluzoks in order to keep your PC safe.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
NOD32 a variant of Win32/Kryptik.YLG
McAfee FakeAlert-Rena.p
AVG SHeur3.CDRQ
Comodo Heur.Suspicious
AVG Generic4.CLBL
Fortinet Adware/Ezula
Ikarus not-a-virus:AdWare.Win32.EZula
GData Win32:Ezula-ACI
Antiy-AVL AdWare/Win32.EZula
AntiVir ADSPY/AdSpy.Gen2
DrWeb Trojan.Siggen3.38439
Kaspersky not-a-virus:AdWare.Win32.EZula.hfqq
Avast Win32:Ezula-ACI [Adw]
F-Prot W32/AdRotator.G.gen!Eldorado
Panda Generic Malware

SpyHunter Detects & Remove Win32/Pluzoks

File System Details

Win32/Pluzoks may create the following file(s):
# File Name MD5 Detections
1. Aide.exe b07dfa511b821e484975224b0072d480 4
2. MYBAR.DLL 36677ef97ed49dd532197083f01066a8 2
3. bho.dll 49a92a33d1775b45b3bd45f8bec24585 2
4. d8308d00-5bd1-f3d9-248d-8e6ab9c6fdf1.dll c91328df849ed7eec2e4f4452a03dc7a 1
5. kho.exe 0f1990ab40d7f76f7a9eecc5884f8912 1
6. winlogon.exe 144454ed814282a258579f8893f17f6a 1
7. 078.dll e65bf873aaa34930331dc64404a15c71 1
8. %windir%\temp\_conifg.ini
9. \_conifg.ini
10. sysnonclose.exe ad9be935c7a170633604d31126c1218f 0
11. file.zip 022cefdb98137d8babb1aa0346216b67 0
12. 333.exe 940f9a73f0bf3e911c739156ea1950f0 0
13. onenment.exe 5a41417005da846912816a80480ee5fd 0

Registry Details

Win32/Pluzoks may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "ozplusv3" = ".exe"

Trending

Most Viewed

Loading...