PUA

PUP.Optional.Planeta removal guide

Malware Removal

The PUP.Optional.Planeta is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.Planeta virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine PUP.Optional.Planeta?


File Info:

crc32: DF17AC9B
md5: 28ed339aa588bfa94c6f9055485013a3
name: zomboz.exe
sha1: cb11612134384788b94a7a04e8dab36336dd3cff
sha256: 04d5b3d7ed16b0e3bf2e37cf8921d0d1a0f6b38bcf1e8587254b935e53914b62
sha512: 8b153392bf993d9e01b700a868b3c1af4c3583297e01b3ebcee57aa5bfecb387dd29329fc6229debf76f4fbccb31a05ede0c5fdd8b4a42ef3f56c301d2bb74a9
ssdeep: 6144:J9SNt57V9Qy7tAG1tFfmuLU+pQHhSusiSB5UfPMRLv0ENk7WfmoFFYkNC/bjOT01:J9SL57Vqy5/mHVsiS5UfPO0GskNutcEr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Made in 2014
FileVersion: 1, 0, 3, 4
ProductVersion: 1, 0, 3, 4
Translation: 0x0419 0x04b0

PUP.Optional.Planeta also known as:

MicroWorld-eScanGen:Variant.Mikey.15682
ALYacGen:Variant.Mikey.15682
MalwarebytesPUP.Optional.Planeta
BitDefenderGen:Variant.Mikey.15682
K7GWAdware ( 004be66d1 )
K7AntiVirusAdware ( 004be66d1 )
ArcabitTrojan.Mikey.D3D42
AgnitumPUA.Downloader!
F-ProtW32/LoadMoney.BX.gen!Eldorado
SymantecSuspicious.Cloud.9
ESET-NOD32a variant of Win32/Adware.LoadMoney.APO.gen
AvastWin32:LoadMoney-XQ [PUP]
Kasperskynot-a-virus:Downloader.Win32.LMN.ain
NANO-AntivirusTrojan.Win32.LMN.dqwitz
Ad-AwareGen:Variant.Mikey.15682
EmsisoftGen:Variant.Mikey.15682 (B)
ComodoApplication.Win32.LoadMoney.APP
F-SecureGen:Variant.Mikey.15682
DrWebTrojan.LoadMoney.603
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroTROJ_GEN.R08NC0PHP15
McAfee-GW-EditionLoadMoney-FXY
SophosGeneric PUA ML (PUA)
CyrenW32/LoadMoney.BX.gen!Eldorado
AviraTR/Crypt.XPACK.Gen3
Antiy-AVLRiskWare[Downloader]/Win32.LMN.ain
AhnLab-V3PUP/Win32.LoadMoney
GDataGen:Variant.Mikey.15682
McAfeeLoadMoney-FXY
AVwareTrojan.Win32.Generic.pak!cobra
VBA32Malware-Cryptor.Inject.gen
Ikarusnot-a-virus:Downloader.Plocust
FortinetRiskware/LoadMoney
AVGGeneric.DBC
PandaTrj/Genetic.gen
Qihoo-360Win32/Trojan.160

How to remove PUP.Optional.Planeta?

PUP.Optional.Planeta removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment