Malware

Downloader.19 malicious file

Malware Removal

The Downloader.19 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.19 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Downloader.19?


File Info:

name: EECC305D5A79020493ED.mlw
path: /opt/CAPEv2/storage/binaries/d7c62e317520bbb801ae0ec30d9f23ce8aaf81f5b79f0cee681a67c13a976b93
crc32: 1171E4B6
md5: eecc305d5a79020493edf1a817c8ffae
sha1: 920772173448facc993299612ed89a162e963958
sha256: d7c62e317520bbb801ae0ec30d9f23ce8aaf81f5b79f0cee681a67c13a976b93
sha512: eb2e2562d1eb8b016fe9ed228e6f9e0ff9d4dc3215d366474bbac0830f487cb45aee0e99a39f3976de4d780ab72251550d6c783510eb23b08539a15df0141f5f
ssdeep: 384:Q98xUHQ2GVZoLjy4Ng8zLeicOerPrKcrXoM1rCHpJIaO00tGhEfFayKmRoOg:TwMVZ4/gopqWkprCbIaO0SGhOFnKmR/g
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18FE26C0D6DA70557F2925E7097BB8AC65BFCBC2B3AABAC6FDF40104114D1088D5E1EB2
sha3_384: 8aae9bbebf7018e98f6b474344d2342377c8b9c2d9abb5eb7f2e3c1f57742264a21b3054b0429df67d40380c81f0fccb
ep_bytes: 558bec81ec380300005356576a4033db
timestamp: 2010-08-30 02:41:44

Version Info:

CompanyName: Adobe Systems, Inc.
FileDescription: Adobe? Flash? Player Installer/Uninstaller 10.1 r53
FileVersion: 10,1,53,64
InternalName: Adobe? Flash? Player Installer/Uninstaller 10.1
LegalCopyright: Copyright ? 1996-2010 Adobe, Inc.
LegalTrademarks: Adobe? Flash? Player
OriginalFilename: FlashUtil.exe
ProductName: Flash? Player Installer/Uninstaller
ProductVersion: 10,1,53,64
Translation: 0x0409 0x04b0

Downloader.19 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Downloader.nm
McAfeeDownloader-BIJ.a
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.InjectGen.Win32.7
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0040f54b1 )
K7GWTrojan ( 0056e8c61 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan.Inject.bm
VirITTrojan.Win32.Genus.DID
SymantecSMG.Heur!gen
ESET-NOD32Win32/TrojanDownloader.Agent.PTT
APEXMalicious
ClamAVWin.Trojan.Kazy-6838217-0
KasperskyHEUR:Trojan.Win32.Miancha.gen
BitDefenderGen:Variant.Downloader.19
NANO-AntivirusTrojan.Win32.Small.bzqcm
ViRobotTrojan.Win32.Downloader.32768.PI
MicroWorld-eScanGen:Variant.Downloader.19
AvastWin32:Simbot-A [Trj]
TencentTrojan.Win32.Miancha.za
TACHYONTrojan-Downloader/W32.Small.32768.FW
EmsisoftGen:Variant.Downloader.19 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner.27746
VIPREGen:Variant.Downloader.19
TrendMicroBKDR_SIMBOT.SMJQ
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.eecc305d5a790204
SophosTroj/DwnLdr-MDK
IkarusTrojan-Downloader.Win32.Small
JiangminTrojanDownloader.Small.akan
WebrootW32.Trojan.Coremhead
VaristW32/Rubin.A.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLTrojan[Downloader]/Win32.Rubinurd.bf
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Injector.ARA!MTB
XcitiumTrojWare.Win32.Injector.ccu@4zdswy
ArcabitTrojan.Downloader.19
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan.Win32.Miancha.gen
GDataWin32.Trojan.PSE1.13MYFBD
GoogleDetected
AhnLab-V3Backdoor/Win32.CSon.R885
Acronissuspicious
VBA32TrojanDownloader.Rubinurd
ALYacGen:Variant.Downloader.19
MAXmalware (ai score=88)
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerTrojan.JS.31147
TrendMicro-HouseCallBKDR_SIMBOT.SMJQ
RisingTrojan.Injector!1.A7C6 (CLASSIC)
YandexTrojan.GenAsa!GIDBK2aXaUc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Downloader.Rubinurd.bf
FortinetW32/Injector.BFSU!tr
BitDefenderThetaAI:Packer.4CC1459B1F
AVGWin32:Simbot-A [Trj]
Cybereasonmalicious.73448f
DeepInstinctMALICIOUS

How to remove Downloader.19?

Downloader.19 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment