Malware

About “Downloader.Soft32” infection

Malware Removal

The Downloader.Soft32 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Soft32 virus can do?

  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The executable is compressed using UPX
  • Anomalous binary characteristics

How to determine Downloader.Soft32?


File Info:

crc32: 2E4AA34F
md5: ceacc385bd42f667bd94966039395fa1
name: CEACC385BD42F667BD94966039395FA1.mlw
sha1: 21db8a993f2f1bc97acdc5998c19ed5169a5b069
sha256: 3cd9ad5cafb796817819e7d678221899ce93bee065a06f5f73487582db4f7c62
sha512: 33d8d03e9574a33c09c7d5fb901bcc204c8b28dee46df6b65d4e9effa6ec6972896cf4bb83f44caab527db76d3a9a61a843de0880d3f4b6930752373c8ad3a89
ssdeep: 6144:PYZ97nXWVDzyMugkciC7/zZ5gh2xZm3qLAZPjKOKAPVGF:Pm7nGVPyMugkciCDzZy8xZGxpk
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright(c) 2010 - 2013
InternalName: Aika2
FileVersion: 1,0,329,4c8ca8ed1da1b27ab8ae15f5102f0fc1a7f9b3fb
CompanyName: GGS
ProductName: Aika2 game
ProductVersion: 1,0,329,4c8ca8ed1da1b27ab8ae15f5102f0fc1a7f9b3fb
FileDescription: Aika2 game
OriginalFilename: aika2.exe
Translation: 0x0419 0x04b0

Downloader.Soft32 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusUnwanted-Program ( 0053edc31 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.IRC.Bot.3478
CAT-QuickHealTrojan.IgenericIH.S20143317
CylanceUnsafe
ZillyaDownloader.Soft32.Win32.53
SangforTrojan.Win32.Save.a
K7GWUnwanted-Program ( 0053edc31 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Syncopate.C potentially unsafe
APEXMalicious
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Syncopate.eddupf
TencentWin32.Trojan-downloader.Generic.Tcme
SophosGeneric PUA CB (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34236.Bu0@aSEwHekk
McAfee-GW-EditionBehavesLike.Win32.BadFile.gh
FireEyeGeneric.mg.ceacc385bd42f667
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Generic.aiis
AviraHEUR/AGEN.1101645
MicrosoftTrojan:Win32/Sabsik.FT.A!ml
AhnLab-V3Malware/Win.Generic.C4467075
Acronissuspicious
McAfeeArtemis!CEACC385BD42
VBA32Downloader.Soft32
YandexTrojan.GenAsa!QWIqy0gswOQ
IkarusTrojan-Downloader.Win32.Genome
FortinetRiskware/Syncopate
Paloaltogeneric.ml

How to remove Downloader.Soft32?

Downloader.Soft32 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment