Home Malware Programs Adware Kozaka

Kozaka

Posted: November 5, 2013

Threat Metric

Ranking: 4,814
Threat Level: 2/10
Infected PCs: 6,588
First Seen: November 5, 2013
Last Seen: September 4, 2023
OS(es) Affected: Windows

Kozaka Screenshot 1Kozaka is an adware that may show pop-up ads, coupons and sponsored links via a pop-up box on social networking and online shopping websites that Internet users are visiting. The Kozaka pop-up advertisements may be shown as boxes, which encompass numerous available coupons, or as underlined keywords, which when clicked may deliver pop-up adverts that state to allegedly come to the web user from Kozaka. When installed on the machine, Kozaka may insert a browser extension, add-on or plug-in for Internet Explorer, Mozilla Firefox and Google Chrome when web users install a variety of freeware and shareware that might had packed into their installation Kozaka. When PC users install freeware and shareware, they may also install Kozaka on the computer system. Whenever the computer user will visit any social networking or online shopping website, Kozaka may show a 'See Similar' button on product images, which when clicked may show pop-up adverts by Kozaka. Kozaka may also show advertising banners on the websites that PC users are visiting, and as they surf the net, Kozaka may show coupons and other deals available on a variety of websites.

Aliases

TR/Trash.Gen [AntiVir]Bloodhound.MalPE [Symantec]Skodna.Generic.ARC [AVG]AdWare/Win32.WebCake.gen [Antiy-AVL]Adware.Plugin.124 [DrWeb]Application.Win32.Altbrowse.AK [Comodo]not-a-virus:AdWare.Win32.Agent.ahbx [Kaspersky]Artemis!171DA209E2AF [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Kozaka\updateKozaka.exe File name: updateKozaka.exe
Size: 65.3 KB (65304 bytes)
MD5: 6aeca52eb470f364b832f56222ccc23e
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Kozaka
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES%\Kozaka\bin\utilKozaka.exe File name: utilKozaka.exe
Size: 72.98 KB (72980 bytes)
MD5: 688b342462ca0d4785c0e12fbdfdd3c4
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Kozaka\bin
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES%\Kozaka\updateKozaka.exe File name: updateKozaka.exe
Size: 72.98 KB (72980 bytes)
MD5: 230dfb5a23cd995d06a2ecf1e7236a66
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Kozaka
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES(x86)%\Kozaka\Kozakauninstall.exe File name: Kozakauninstall.exe
Size: 240.08 KB (240081 bytes)
MD5: 40125ef9cf8ec1f30070b83d140415ef
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Kozaka
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES%\Kozaka\updateKozaka.exe File name: updateKozaka.exe
Size: 66.32 KB (66328 bytes)
MD5: d281b527c93e0a5fe9e1120bbdee6635
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Kozaka
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES%\Kozaka\updateKozaka.exe File name: updateKozaka.exe
Size: 65.81 KB (65816 bytes)
MD5: 8418e055454cb319377d14fb4af06b55
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Kozaka
Group: Malware file
Last Updated: January 3, 2014
%PROGRAMFILES%\Kozaka\Kozakabho.dll File name: Kozakabho.dll
Size: 249.62 KB (249624 bytes)
MD5: ed6e31ba6f2c9d8f771b6f35545d83dc
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Kozaka
Group: Malware file
Last Updated: June 23, 2022
%PROGRAMFILES(x86)%\Kozaka\updateKozaka.exe File name: updateKozaka.exe
Size: 1.52 KB (1521 bytes)
MD5: 5273ce694db25ad2b9b6d16fdfbd46d9
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Kozaka
Group: Malware file
Last Updated: January 3, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{7357A44B-D09F-40DA-9B0B-639C741A471D}{a45e3fa8-5048-4372-94ad-c6661671f7fc}{C5C68B66-D3BF-4EF2-9AAD-8C15B10039FF}HKEY..\..\..\..{RegistryKeys}Software\KozakaSOFTWARE\Microsoft\Tracing\updateKozaka_RASAPI32SOFTWARE\Microsoft\Tracing\updateKozaka_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{a45e3fa8-5048-4372-94ad-c6661671f7fc}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A45E3FA8-5048-4372-94AD-C6661671F7FC}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A45E3FA8-5048-4372-94AD-C6661671F7FC}SOFTWARE\Wow6432Node\KozakaSOFTWARE\Wow6432Node\Microsoft\Tracing\updateKozaka_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateKozaka_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{a45e3fa8-5048-4372-94ad-c6661671f7fc}SYSTEM\ControlSet001\services\eventlog\Application\Update KozakaSYSTEM\ControlSet001\services\Update KozakaSYSTEM\CurrentControlSet\services\eventlog\Application\Update KozakaSYSTEM\CurrentControlSet\services\Update KozakaHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Kozaka

Additional Information

The following directories were created:
%PROGRAMFILES%\Kozaka%PROGRAMFILES(x86)%\Kozaka
Loading...