Trojan

TrojanDownloader:Win32/Plingky.A malicious file

Malware Removal

The TrojanDownloader:Win32/Plingky.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Plingky.A virus can do?

  • Uses Windows utilities for basic functionality
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Attempted to write directly to a physical drive
  • Attempts to modify proxy settings
  • Deletes executed files from disk
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine TrojanDownloader:Win32/Plingky.A?


File Info:

name: EAE12779FEBF6C8CB51B.mlw
path: /opt/CAPEv2/storage/binaries/8343d3ca4596d46d1c3667022902499f9ff2c3746493f39d710c4f06c670f6f0
crc32: D174C2B6
md5: eae12779febf6c8cb51b4cadbae20fec
sha1: 2d3fe4fe03cae9a0a3f1c965b6996c04eef5690d
sha256: 8343d3ca4596d46d1c3667022902499f9ff2c3746493f39d710c4f06c670f6f0
sha512: a57a68fd6a3c69be48fe02bfda2a0be44392345d9ca4463e72ba347c6ada0d911c4949059f309b17167d1b35218b74beda8c6123efb964e4757dea6a5af56e8e
ssdeep: 12288:pl41zfEOYGxSp+GKMXExFVWIaK3sojsif:T6oOx0KMwVWIae
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B7A4CFA2E147ACD0F1A3C03D14FC9639B16D9E60D247C9E69B30FF4529EBC5DAA39118
sha3_384: 4e8528708e8e1cb7147d66023096744e1f40dde9dbf18ef93dc5cfc1cd15e2aa73536747e431167e19b8ed3d296972e5
ep_bytes: 5589e583ec18c7042402000000ff1508
timestamp: 2011-02-01 15:08:39

Version Info:

0: [No Data]

TrojanDownloader:Win32/Plingky.A also known as:

BkavW32.AIDetectMalware
DrWebTrojan.MulDrop2.62828
MicroWorld-eScanDropped:Trojan.Generic.5654095
FireEyeGeneric.mg.eae12779febf6c8c
CAT-QuickHealDownldr.Plingky.S4044679
SkyhighBehavesLike.Win32.VirRansom.gc
ALYacDropped:Trojan.Generic.5654095
MalwarebytesBladabindi.Backdoor.Bot.DDS
ZillyaTrojan.Agent.Win32.166142
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 001ff8401 )
BitDefenderDropped:Trojan.Generic.5654095
K7GWTrojan ( 001ff8401 )
Cybereasonmalicious.e03cae
BitDefenderThetaGen:NN.ZexaCO.36792.BiW@aelH6fci
VirITTrojan.Win32.Agent.AGCM
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.SGX
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Agent-424755
KasperskyTrojan-PSW.Win32.Bjlog.dwcz
NANO-AntivirusTrojan.Win32.Agent.ddcsr
TencentTrojan.Win32.Downloader.cc
SophosMal/Generic-S
F-SecureTrojan.TR/Rogue.38215264
BaiduWin32.Trojan.Agent.du
VIPREDropped:Trojan.Generic.5654095
TrendMicroTROJ_DROPR.SMIL
Trapminemalicious.high.ml.score
EmsisoftDropped:Trojan.Generic.5654095 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.13LF282
JiangminTrojan/Generic.cqoh
WebrootW32.Malware.Downloader
VaristW32/A-f329c2b0!Eldorado
AviraTR/Rogue.38215264
Antiy-AVLTrojan[Dropper]/Win32.Agent
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.Agent.sgx@4i1tyd
ArcabitTrojan.Generic.D56464F
ZoneAlarmTrojan-PSW.Win32.Bjlog.dwcz
MicrosoftTrojanDownloader:Win32/Plingky.A
GoogleDetected
AhnLab-V3Dropper/Win32.OnlineGameHack.R18678
McAfeeDownloader-CSV
MAXmalware (ai score=84)
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Tiggre
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_DROPR.SMIL
RisingTrojan.DL.Win32.GenFxj.bw (CLASSIC)
YandexTrojan.GenAsa!kA7aDTmHVw8
IkarusTrojan-Dropper.Agent
FortinetW32/Oficla.NK!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanDownloader:Win32/Plingky.A?

TrojanDownloader:Win32/Plingky.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment