Malware

Should I remove “Downloader.19”?

Malware Removal

The Downloader.19 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.19 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Downloader.19?


File Info:

name: B0A5CD41391540FD445B.mlw
path: /opt/CAPEv2/storage/binaries/22afb92348e58d0435eca3e49b03ad609360df369f9b6f39073d5ba2263b7f66
crc32: CFFEBFB4
md5: b0a5cd41391540fd445be31322787c94
sha1: aba73f18427a9600cd943bd1f1c95ee0c8d683f8
sha256: 22afb92348e58d0435eca3e49b03ad609360df369f9b6f39073d5ba2263b7f66
sha512: f6a737085380813152f68dd0712332948ab1cda268b209e494c3120b5b995346f8b4555d83f4761997b2d3c096c58041fab64f90f6772a9bafa014666a6699c5
ssdeep: 384:Q98xUHQ6jOtnKcy4Ng8zLeiSerSYqGKxIoH+Mhdp9ONw44g:TwWN/gopEavorhdOh4g
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C1E27D1D5EA3055BF2828D709BF646C6EBFD7C2736EA642FEF440146289408CE0A1EB1
sha3_384: 8bae06e5b75d3b5013faf97b558676ced115b91d4b42ce8492c717961e5dc1a65b82908a833895afe52e4e1a2ec08988
ep_bytes: 558bec81ec380300005356576a4033db
timestamp: 2010-08-30 02:41:44

Version Info:

CompanyName: Adobe Systems, Inc.
FileDescription: Adobe? Flash? Player Installer/Uninstaller 10.1 r53
FileVersion: 10,1,53,64
InternalName: Adobe? Flash? Player Installer/Uninstaller 10.1
LegalCopyright: Copyright ? 1996-2010 Adobe, Inc.
LegalTrademarks: Adobe? Flash? Player
OriginalFilename: FlashUtil.exe
ProductName: Flash? Player Installer/Uninstaller
ProductVersion: 10,1,53,64
Translation: 0x0409 0x04b0

Downloader.19 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Downloader.19
ClamAVWin.Trojan.Kazy-6838217-0
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Downloader.nm
McAfeeDownloader-BIJ.a
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.InjectGen.Win32.7
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0040f54b1 )
K7GWTrojan ( 0056e8c61 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan.Inject.bm
VirITTrojan.Win32.Genus.DID
SymantecSMG.Heur!gen
ESET-NOD32Win32/TrojanDownloader.Agent.PTT
ZonerTrojan.JS.31147
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Miancha.gen
BitDefenderGen:Variant.Downloader.19
NANO-AntivirusTrojan.Win32.Small.bzqcm
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
AvastWin32:Simbot-A [Trj]
TACHYONTrojan-Downloader/W32.Small.32768.FW
EmsisoftGen:Variant.Downloader.19 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner.27746
VIPREGen:Variant.Downloader.19
TrendMicroBKDR_SIMBOT.SMJQ
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.b0a5cd41391540fd
SophosTroj/DwnLdr-MDK
IkarusTrojan-Downloader.Win32.Small
JiangminTrojanDownloader.Small.akan
WebrootW32.Trojan.Coremhead
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan[Downloader]/Win32.Rubinurd.bf
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Injector.ARA!MTB
XcitiumTrojWare.Win32.Injector.ccu@4zdswy
ArcabitTrojan.Downloader.19
ViRobotTrojan.Win32.Downloader.32768.PI
ZoneAlarmHEUR:Trojan.Win32.Miancha.gen
GDataWin32.Trojan.PSE1.13MYFBD
VaristW32/Rubin.A.gen!Eldorado
AhnLab-V3Backdoor/Win32.CSon.R885
Acronissuspicious
VBA32TrojanDownloader.Rubinurd
ALYacGen:Variant.Downloader.19
MAXmalware (ai score=86)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallBKDR_SIMBOT.SMJQ
RisingTrojan.Injector!1.A7C6 (CLASSIC)
YandexTrojan.GenAsa!GIDBK2aXaUc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Downloader.Rubinurd.bf
FortinetW32/Injector.BFSU!tr
BitDefenderThetaAI:Packer.4CC1459B1F
AVGWin32:Simbot-A [Trj]
Cybereasonmalicious.8427a9
DeepInstinctMALICIOUS

How to remove Downloader.19?

Downloader.19 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment