Trojan

Trojan.Downloader.P2P (file analysis)

Malware Removal

The Trojan.Downloader.P2P is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Downloader.P2P virus can do?

  • Executable code extraction
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Downloader.P2P?


File Info:

crc32: 08E76499
md5: ac0208d8905dffb7437c5d30a08dc472
name: AC0208D8905DFFB7437C5D30A08DC472.mlw
sha1: 1da1b1cddbd7eda5ea801c70ceb6db9488967929
sha256: de05262ad0d1acb6f99299a52795d98a2e4c127189beec4ed471b243406bb91a
sha512: a3576958de8c433ff2e68e82d283a341f05ff89b6df35eb45720c94a0cec05d4175df538b4b376812827dfb404cbb967fc0f9923f4f02d41fb03813c2819a3f0
ssdeep: 24576:UrB85U7CZrqE6aiZ+wXTs6RJyyTM7vo7u1/Uhj:UrB83ZMDHmFLDyF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: SysMon
FileVersion: 1.00
CompanyName: System Service
ProductName: System Monitor Service
ProductVersion: 1.00
FileDescription: SysMon
OriginalFilename: SysMon.exe

Trojan.Downloader.P2P also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.2141772
FireEyeGeneric.mg.ac0208d8905dffb7
McAfeeDownloader-ACV
CylanceUnsafe
VIPRETrojan.Win32.Generic.pak!cobra
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderTrojan.Generic.2141772
K7GWSpyware ( 0055e3f61 )
K7AntiVirusSpyware ( 0055e3f61 )
CyrenW32/Trojan.BMNX-8530
SymantecTrojan.Popper
TotalDefenseWin32/Notiex.E
APEXMalicious
Paloaltogeneric.ml
ClamAVHtml.Trojan.ClickerVB-40
KasperskyTrojan-Clicker.Win32.VB.ij
NANO-AntivirusTrojan.Win32.VB.uxrp
ViRobotTrojan.Win32.VB.825280
SUPERAntiSpywareAdware.SysMon
RisingTrojan.Clicker.VB.jo (CLOUD)
Ad-AwareTrojan.Generic.2141772
SophosML/PE-A + Troj/DwnLdr-CFH
ComodoTrojWare.Win32.TrojanClicker.VB.IJ@1sts
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Click.911
ZillyaTrojan.VB.Win32.22964
TrendMicroTROJ_POPPER.A
McAfee-GW-EditionBehavesLike.Win32.Swisyn.dm
EmsisoftTrojan.Generic.2141772 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanClicker.VB.tx
AviraTR/Dropper.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan[Clicker]/Win32.VB
MicrosoftTrojanDownloader:Win32/Small
ArcabitTrojan.Generic.D20AE4C
AegisLabTrojan.Win32.VB.8!c
ZoneAlarmTrojan-Clicker.Win32.VB.ij
GDataTrojan.Generic.2141772
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Xema.C74351
BitDefenderThetaAI:Packer.625AB54D1F
ALYacTrojan.Generic.2141772
VBA32BScope.TrojanClicker.VB
MalwarebytesTrojan.Downloader.P2P
PandaTrj/Clicker.RF
ESET-NOD32Win32/TrojanClicker.VB.IJ
TrendMicro-HouseCallTROJ_POPPER.A
TencentMalware.Win32.Gencirc.116921d7
YandexTrojan.GenAsa!qmkkjp72SZw
IkarusTrojan-Clicker.Win32.VB.IJ
FortinetW32/VB.IJ!tr
AVGWin32:Small-FT [Trj]
Cybereasonmalicious.8905df
AvastWin32:Small-FT [Trj]
Qihoo-360Win32/Trojan.Clicker.269

How to remove Trojan.Downloader.P2P?

Trojan.Downloader.P2P removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment