Trojan

TrojanDownloader:Win32/Small!AP malicious file

Malware Removal

The TrojanDownloader:Win32/Small!AP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Small!AP virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
www.mswangluo.com
a.tomx.xyz

How to determine TrojanDownloader:Win32/Small!AP?


File Info:

crc32: A05E8ABD
md5: 37e42361ee57380c6130bc62029a252e
name: svchost.exe
sha1: 5924e6a51c7f941855520c6b97c04ac0a1ef3b6a
sha256: 5630c085460a1d2b20a6f03ddea235ebfffc5e4a14e0bfa25485e92da982a176
sha512: a0dd4c639510e4b4aebb8673ae62f321c71814c52c4265f3c90da47397a90506ec069eb46109236cfd3ab0d81e78f27b48d3b3b3a681d96e5e239fd0e42ddb85
ssdeep: 6144:Q6MT1ImD7+hGphFyAAsw8rl6RKTC3Fd2HIDzsuEhriB:Qd7hFNrw8rlkiKL2oDzsTe
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Windowsx7f51x7edcx8f85x52a9x529fx80fdx63d2x4ef6
InternalName: Windowsx7f51x7edcx8f85x52a9x529fx80fdx63d2x4ef6
FileVersion: 1.0.0.1
CompanyName: Windowsx7f51x7edcx8f85x52a9x529fx80fdx63d2x4ef6
ProductName: Windowsx7f51x7edcx8f85x52a9x529fx80fdx63d2x4ef6
ProductVersion: 1.0.0.1
FileDescription: Windows Server
OriginalFilename: Windowsx7f51x7edcx8f85x52a9x529fx80fdx63d2x4ef6
Translation: 0x040c 0x04e4

TrojanDownloader:Win32/Small!AP also known as:

MicroWorld-eScanTrojan.Cud.Gen.1
FireEyeTrojan.Cud.Gen.1
CAT-QuickHealTrojan.ServstartRI.S10996511
CylanceUnsafe
K7AntiVirusTrojan-Downloader ( 0055a9821 )
BitDefenderTrojan.Cud.Gen.1
K7GWTrojan-Downloader ( 0055a9821 )
Cybereasonmalicious.1ee573
SymantecML.Attribute.HighConfidence
BaiduWin32.Trojan-Downloader.Agent.cw
GDataTrojan.Cud.Gen.1
KasperskyTrojan.Win32.ServStart.acwk
NANO-AntivirusTrojan.Win32.ServStart.ginthm
RisingDownloader.Agent!8.B23 (RDMK:cmRtazpwNW+6ms/PAG/JdLdhCGET)
Ad-AwareTrojan.Cud.Gen.1
F-SecureHeuristic.HEUR/AGEN.1046092
DrWebTrojan.DownLoader30.41253
ZillyaTrojan.ServStart.Win32.18853
SentinelOneDFI – Malicious PE
EmsisoftTrojan.Cud.Gen.1 (B)
CyrenW32/Downldr.KF.gen!Eldorado
JiangminTrojan.ServStart.acb
AviraHEUR/AGEN.1046092
Antiy-AVLTrojan[Downloader]/Win32.Small
Endgamemalicious (high confidence)
ArcabitTrojan.Cud.Gen.1
ZoneAlarmTrojan.Win32.ServStart.acwk
MicrosoftTrojanDownloader:Win32/Small.gen!AP
AhnLab-V3Malware/Win32.RL_Generic.R325188
Acronissuspicious
McAfeeGenericRXAA-AA!37E42361EE57
MAXmalware (ai score=83)
VBA32suspected of Trojan.Downloader.gen.h
MalwarebytesBackdoor.Farfli
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.EUJ
IkarusTrojan-Downloader.Win32.Agent
FortinetW32/Agent.EUJ!tr.dldr
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]
Qihoo-360HEUR/QVM09.0.5BCB.Malware.Gen

How to remove TrojanDownloader:Win32/Small!AP?

TrojanDownloader:Win32/Small!AP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment