Trojan

TrojanDownloader:Win32/Small.AABM malicious file

Malware Removal

The TrojanDownloader:Win32/Small.AABM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Small.AABM virus can do?

  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • HTTPS urls from behavior.
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/Small.AABM?


File Info:

name: 23B06031ED42DB1801BF.mlw
path: /opt/CAPEv2/storage/binaries/f219a188346a40bf36931da57a2621b754abf104156cd5dfcb2c035ce79a6e2f
crc32: 85AFF13E
md5: 23b06031ed42db1801bfaa4cac54d0cb
sha1: 2eb1593c4e97f5f34b084b9c4e96b8229cb6a299
sha256: f219a188346a40bf36931da57a2621b754abf104156cd5dfcb2c035ce79a6e2f
sha512: 819c9faec3bc3c6c38f36580010b55ac2698b05925932666a4bf2c161513e410878cbb4bef86928df64e66c277b8e35786ded787811de9194f1d5dc09a589422
ssdeep: 96:cyRt7wRpHDQanhgdH5SgJiVPabF+kPtboynmf7j7+I85Z:cyQRp3hIIgYO+kP1oyn3IG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15BD12A271968D4B2D28E08F38C417AD1917319B15B71AB1F4E330A54BDF30E7871A2AB
sha3_384: f076bfabd56c230d22b8b9bd4d04f25b2de4f650e043b1a0843410d0374587c2fe21234c0d7f21eb82298f041f19eec6
ep_bytes: 558bec6aff686820400068901b400064
timestamp: 2010-07-19 17:47:26

Version Info:

0: [No Data]

TrojanDownloader:Win32/Small.AABM also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Stabs.lbg2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.4792466
FireEyeGeneric.mg.23b06031ed42db18
ALYacTrojan.Generic.4792466
CylanceUnsafe
SangforTrojan.Win32.Hexadom.A
AlibabaTrojanDownloader:Win32/Hexadom.a8357b80
Cybereasonmalicious.1ed42d
VirITTrojan.Win32.Small.ATCT
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Small.PCY
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Small-14675
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.4792466
NANO-AntivirusTrojan.Win32.Small.bmofl
AvastWin32:Trojan-gen
TencentWin32.Trojan-Downloader.Small.nnk
Ad-AwareTrojan.Generic.4792466
SophosMal/Generic-R + Troj/Small-EOF
ComodoTrojWare.Win32.Small.dy101@4owfj5
F-SecureTrojan.TR/Hexadom.A
DrWebTrojan.DownLoad2.44244
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.Generic.4792466 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Generic.4792466
JiangminTrojanDownloader.Small.ajkd
WebrootW32.Malware.Gen
AviraTR/Hexadom.A
Antiy-AVLTrojan/Generic.ASMalwS.320354
KingsoftWin32.TrojDownloader.Small.at.(kcloud)
ViRobotTrojan.Win32.A.Downloader.6656.FM
MicrosoftTrojanDownloader:Win32/Small.AABM
CynetMalicious (score: 100)
AhnLab-V3Downloader/Win32.Small.C146478
McAfeeArtemis!23B06031ED42
MAXmalware (ai score=100)
VBA32BScope.Trojan.Wacatac
RisingDownloader.Small!8.B41 (CLOUD)
YandexTrojan.GenAsa!D8lJ4EVqAlM
IkarusTrojan-Downloader.Win32.Small
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Small.ATCT!tr.dldr
BitDefenderThetaGen:NN.ZexaF.34606.amW@a4SE4zm
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_70% (W)

How to remove TrojanDownloader:Win32/Small.AABM?

TrojanDownloader:Win32/Small.AABM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment