Backdoor

Backdoor.Small information

Malware Removal

The Backdoor.Small is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Small virus can do?

  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Checks for the presence of known devices from debuggers and forensic tools
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Small?


File Info:

crc32: B1B2EE72
md5: 526600975e7f11e8ebe61053d35e1f61
name: brewers.exe
sha1: bfd440ad52c1b9392673511149b8ac4345663ed9
sha256: 1f435595bf7c9dd484c9298391f6445c87a53b92b790e5c24f056684a20f90e7
sha512: fde66fb53880f4ad230c0e205a5649e98e41b8759841c5771e7f15065e319ce0993602fac75cfd1ef17bec9300a7a66ffeecf892774fe62d728b34a9f0a19bd0
ssdeep: 1536:WIuvOGi9BO2VQrB8UBlPn3oYPjF/dMUhcTpUx8sjWGMfZZJQMt0YIJ:WI5r9U2VcDPvnbusK7240F
type: MS-DOS executable, MZ for MS-DOS

Version Info:

LegalCopyright: xa9 2007-2008 BReWErS
InternalName: brewers.exe
FileVersion: 1.0
CompanyName: BReWErS
Comments: 100% ASM
ProductName: BReWErS The Sims 2 FreeTime Trainer
OriginalFilename: trainer.exe
FileDescription: The Sims 2 FreeTime v1.13.0.161 +3 Trainer
BuildTimestamp: Sun Jul 20 05:32:29 2008 GMT
ProductVersion: v0.8
Translation: 0x0409 0x04e4

Backdoor.Small also known as:

MicroWorld-eScanTrojan.Generic.2866029
nProtectTrojan/W32.Agent.79164
CAT-QuickHeal(Suspicious) – DNAScan
McAfeeGeneric.grp!bg
MalwarebytesBackdoor.Small
TheHackerW32/Behav-Heuristic-060
K7AntiVirusRiskware
AgnitumPacked/Upack
F-ProtW32/Heuristic-210!Eldorado
SymantecInfostealer.Gampass
NormanW32/Packed_Upack.A
TotalDefenseWin32/Dogbab!generic
TrendMicro-HouseCallTROJ_PACKED.BPO
AvastWin32:Malware-gen
eSafeWin32.Infostealer.Ga
BitDefenderTrojan.Generic.2866029
NANO-AntivirusTrojan.Win32.GameHack.ifhda
ViRobotPacked.Win32.UPack
EmsisoftTrojan.Generic.2866029 (B)
ComodoPacked.Win32.MUPACK.~KW
F-SecureTrojan.Generic.2866029
VIPRETrojan.Win32.Packer.Upack0.3.9 (ep)
AntiVirTR/PWS.81920.33
TrendMicroTROJ_PACKED.BPO
McAfee-GW-EditionHeuristic.BehavesLike.Win32.Suspicious-BAY.G
JiangminTrojanDownloader.FraudLoad.liz
KingsoftWin32.Malware.Heur_Generic.A.(kcloud)
GDataTrojan.Generic.2866029
CommtouchW32/Heuristic-210!Eldorado
AhnLab-V3Packed/Upack
PCToolsTrojan-PSW.Gampass
ESET-NOD32a variant of Win32/GameHack.O
RisingTrojan.Win32.Generic.12B3C08E
IkarusTrojan.Zlob
FortinetW32/Malware_fam.NB
AVGSuspicion: unknown virus
PandaTrj/Pupack.A

How to remove Backdoor.Small?

Backdoor.Small removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment