Trojan

MSIL/TrojanDownloader.Small.BTK (file analysis)

Malware Removal

The MSIL/TrojanDownloader.Small.BTK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Small.BTK virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/TrojanDownloader.Small.BTK?


File Info:

crc32: 4C91B4C1
md5: b61673dfb0c0730932915baa7f1e7cf2
name: B61673DFB0C0730932915BAA7F1E7CF2.mlw
sha1: c994ee0ee4ecc8253852c6afc54a9e1a1dd8f869
sha256: 249cd1b39d7cd4a3d401211e1d8044af713f631532ad271592076df1eeb82553
sha512: d17951af25b0d6939077b84eb9b58399a4b0d166002aaf05b1b482ade607c54ed1f29f02f218428dd8480986c54848f4e43b5e06ccfe64082e403fed51f0e339
ssdeep: 6144:BqeAT7p/5xcdhLKL2Trf3Nkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk:EJVbcjLKqrvNkkkkkkkkkkkkkkkkkkk
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: GMAIL.exe
FileVersion: 1.0.0.0
ProductName: GMAIL
ProductVersion: 1.0.0.0
FileDescription: GMAIL
OriginalFilename: GMAIL.exe

MSIL/TrojanDownloader.Small.BTK also known as:

K7AntiVirusTrojan-Downloader ( 0053b8601 )
LionicTrojan.MSIL.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.44609
CynetMalicious (score: 99)
CylanceUnsafe
ZillyaTrojan.Disfa.Win32.70105
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/Disfa.1bb58230
K7GWTrojan-Downloader ( 0053b8601 )
Cybereasonmalicious.ee4ecc
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Small.BTK
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Packed.Msilperseus-9802572-0
KasperskyHEUR:Trojan.MSIL.Disfa.gen
NANO-AntivirusTrojan.Win32.KillProc.fhzaez
TencentMsil.Trojan.Disfa.Pdby
SophosMal/Generic-S
ComodoMalware@#i6nkam3fc4um
BitDefenderThetaGen:NN.ZemsilF.34266.mq0@aS@qeuj
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.b61673dfb0c07309
SentinelOneStatic AI – Malicious PE
AviraTR/AD.Bladabindi.mbmbk
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2817A20
MicrosoftBackdoor:MSIL/Bladabindi
McAfeeArtemis!B61673DFB0C0
MalwarebytesMalware.AI.4201811270
PandaTrj/GdSda.A
IkarusTrojan-Spy.Agent
FortinetMSIL/Small.BTK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove MSIL/TrojanDownloader.Small.BTK?

MSIL/TrojanDownloader.Small.BTK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment