Trojan

TrojanDownloader:MSIL/Prardrukat.A removal tips

Malware Removal

The TrojanDownloader:MSIL/Prardrukat.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:MSIL/Prardrukat.A virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine TrojanDownloader:MSIL/Prardrukat.A?


File Info:

name: EC36CDCBB8F9782C1108.mlw
path: /opt/CAPEv2/storage/binaries/12769492d30000b51fbd042096dfddc6c1d9ea9e981f45adfb3b4ce8a08caa4c
crc32: FC359008
md5: ec36cdcbb8f9782c11088e03cb6102b9
sha1: 0a31269b739f5f3251525bfd191f187b6599976c
sha256: 12769492d30000b51fbd042096dfddc6c1d9ea9e981f45adfb3b4ce8a08caa4c
sha512: c3a1bec4b78b99ed9280de075ea67908f93dfa79dc80270cf445553db30b437a7f975cdd5858e33ddf9454d8ff1c8508b2e45a4d017d1b5c68868fa16b955e33
ssdeep: 6144:Q0hCIDeaXVzMTPATcg8F1yo11C1C1J1s41W1111HV111A1fO1xwDvOmm11nVAALK:9CIhXVzMbG8F1n11C1C1J1s41W11111U
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T159348B2979678E21D50D1033C0DF457943B49F926AB3E3ABBEAC321D45363A37D09AC9
sha3_384: 0e21e8b2b4f7d831e2b1c7107ddf44f90ae1e1b2884dbfb503ce9de92e65b0a9e9b37c6262806353b4bb00718f9de448
ep_bytes: ff250020400000000000000000000000
timestamp: 2016-02-06 12:06:18

Version Info:

Translation: 0x0000 0x04b0
FileDescription: 小鴨防護
FileVersion: 1.0.0.0
InternalName: 小鴨防護.exe
LegalCopyright: Copyright © 2015
OriginalFilename: 小鴨防護.exe
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

TrojanDownloader:MSIL/Prardrukat.A also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.MSILPerseus.2539
FireEyeGeneric.mg.ec36cdcbb8f9782c
SkyhighArtemis!Trojan
McAfeeArtemis!EC36CDCBB8F9
ZillyaTrojan.Agent.Win32.960224
SangforTrojan.Win32.Prardrukat.8
K7AntiVirusTrojan ( 004dd4d01 )
AlibabaTrojan:MSIL/Generic.27202457
K7GWTrojan ( 004dd4d01 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.MSILPerseus.D9EB
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.QZB
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Msilperseus-7611880-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.MSILPerseus.2539
NANO-AntivirusTrojan.Win32.MSILPerseus.fhiygc
AvastWin32:Trojan-gen
TencentWin32.Trojan.Dldr.Ijgl
EmsisoftGen:Variant.MSILPerseus.2539 (B)
F-SecureTrojan.TR/Dldr.Agent.fdlig
VIPREGen:Variant.MSILPerseus.2539
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
VaristW32/MSIL_Kryptik.BXN.gen!Eldorado
AviraTR/Dldr.Agent.fdlig
MAXmalware (ai score=99)
Kingsoftmalware.kb.c.953
MicrosoftTrojanDownloader:MSIL/Prardrukat.A
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.MSILPerseus.2539
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.C3525201
BitDefenderThetaGen:NN.ZemsilF.36744.oq0@amqlrZf
ALYacGen:Variant.MSILPerseus.2539
Cylanceunsafe
PandaTrj/GdSda.A
RisingDownloader.Prardrukat!8.123B (CLOUD)
YandexTrojan.Agent!4w+mCFtzMIo
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.QZB!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.b739f5
DeepInstinctMALICIOUS

How to remove TrojanDownloader:MSIL/Prardrukat.A?

TrojanDownloader:MSIL/Prardrukat.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment