Trojan

MSIL/TrojanDownloader.Small.CJA removal tips

Malware Removal

The MSIL/TrojanDownloader.Small.CJA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Small.CJA virus can do?

  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

h.top4top.io
apps.identrust.com
winddns.zapto.org

How to determine MSIL/TrojanDownloader.Small.CJA?


File Info:

crc32: 4463F18B
md5: 748a40e9812c75b59d58492015598b05
name: 748A40E9812C75B59D58492015598B05.mlw
sha1: c2fb4a3f9aa07f8b87b10f08af391cdd72637e0b
sha256: 664c7692522164c6e7095928747b24baab235688656a980b4c709b474e552db9
sha512: 2f103b653406a609d1a429cdda365ee9475218e04f4631a3489cfc1856b1476f4b88af58a2e4d45cc6a9b65bf6f6ffc44de20c1e671b1e8999a6ee934bb91804
ssdeep: 96:tCDLhS3NFpbine0SMMjggbSEzlSvawOHPp4MqjAlTCfFK6wl6h1fmkvV77ezNt:iLiFQSTgJEz0vaNXqjiT6DpB774
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: XTREEA
Assembly Version: 5.4.4.5
InternalName: tera.exe
FileVersion: 6.5.5.6
CompanyName: XTREEA
LegalTrademarks: XTREEA
Comments: XTREEA
ProductName: XTREEA
ProductVersion: 6.5.5.6
FileDescription: XTREEA
OriginalFilename: tera.exe

MSIL/TrojanDownloader.Small.CJA also known as:

MicroWorld-eScanTrojan.GenericKD.45603116
McAfeeRDN/Generic.dx
CylanceUnsafe
ZillyaDownloader.Small.Win32.136920
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 005769d91 )
BitDefenderTrojan.GenericKD.45603116
K7GWTrojan-Downloader ( 005769d91 )
Cybereasonmalicious.f9aa07
CyrenW32/MSIL_Agent.BSN.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:MSIL/Generic.3424c336
RisingDownloader.Small!8.B41 (CLOUD)
Ad-AwareTrojan.GenericKD.45603116
SophosGeneric PUA MC (PUA)
F-SecureTrojan.TR/Dldr.Small.yngjh
TrendMicroTROJ_GEN.R002C0PAP21
McAfee-GW-EditionRDN/Generic.dx
FireEyeGeneric.mg.748a40e9812c75b5
EmsisoftTrojan.GenericKD.45603116 (B)
IkarusTrojan-Downloader.MSIL.Small
AviraTR/Dldr.Small.yngjh
MAXmalware (ai score=88)
MicrosoftTrojan:Win32/Ymacco.AA35
ArcabitTrojan.Generic.D2B7D92C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.45603116
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.RL_Generic.C4307448
BitDefenderThetaGen:NN.ZemsilF.34804.am0@aGOqxLi
ALYacTrojan.GenericKD.45603116
MalwarebytesTrojan.Downloader.MSIL
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Small.CJA
TrendMicro-HouseCallTROJ_GEN.R002C0PAP21
TencentWin32.Trojan.Generic.Ahew
SentinelOneStatic AI – Malicious PE
FortinetW32/Generic!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Win32/Trojan.ae8

How to remove MSIL/TrojanDownloader.Small.CJA?

MSIL/TrojanDownloader.Small.CJA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment