Trojan

TrojanDownloader:Win32/Small!Z removal instruction

Malware Removal

The TrojanDownloader:Win32/Small!Z is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Small!Z virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
sed.zhzy999.net
a.tomx.xyz

How to determine TrojanDownloader:Win32/Small!Z?


File Info:

crc32: 87F6DBC4
md5: 3193158dd26b1748a621d5ea555a036e
name: down.exe
sha1: 44d3acf8295fe89d941c4d416bbc0ede39a4c75f
sha256: a431226481cc7f4f5c023acc96193c296305db84f9dda0b41ca158c4b8b25443
sha512: 4e634a80a7388c9735170680b98ed75b480a505f2a0f3eaaa49cbff0412b85e8e07b9710dacf492b541d41b05e6b50df48536d3d7c96674b2e8004158e026ea3
ssdeep: 192:nm+IwZRTL+GVW6zBEVttzMz1xwkPtBVICnXAZp8MnjXdxhy:aw7SmzBItzMz1x1PtB2GYNjNzy
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

TrojanDownloader:Win32/Small!Z also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.DownLoader.15120
MicroWorld-eScanGeneric.Malware.Bdld.25CBA130
CMCTrojan-Downloader.Win32!O
ALYacGeneric.Malware.Bdld.25CBA130
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 7000000f1 )
BitDefenderGeneric.Malware.Bdld.25CBA130
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.dd26b1
BitDefenderThetaAI:Packer.D6355ED91E
F-ProtW32/Delfloader.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataGeneric.Malware.Bdld.25CBA130
KasperskyTrojan-Downloader.Win32.Small.dbv
AlibabaTrojanDownloader:Win32/Small.83116230
Endgamemalicious (moderate confidence)
EmsisoftGeneric.Malware.Bdld.25CBA130 (B)
ComodoTrojWare.Win32.TrojanDownloader.Agent.cdqsj@1wqmzx
F-SecureTrojan.TR/Dldr.Delphi.Gen
TrendMicroTROJ_GEN.R020C0DDF20
McAfee-GW-EditionBehavesLike.Win32.Gbot.lc
Trapminemalicious.moderate.ml.score
SophosMal/DelpDldr-C
SentinelOneDFI – Malicious PE
CyrenW32/Delfloader.B.gen!Eldorado
JiangminTrojan/Small.dl
WebrootW32.Malware.Gen
AviraTR/Dldr.Delphi.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojanDownloader:Win32/Small.gen!Z
ArcabitGeneric.Malware.Bdld.25CBA130
AegisLabTrojan.Win32.Small.a!c
ZoneAlarmTrojan-Downloader.Win32.Small.dbv
AhnLab-V3Downloader/Win32.Generic.C4063823
Acronissuspicious
McAfeeArtemis!3193158DD26B
VBA32Trojan.Win32.Small.102210
PandaTrj/CI.A
ESET-NOD32a variant of Win32/TrojanDownloader.Delf.CWY
TrendMicro-HouseCallTROJ_GEN.R020C0DDF20
TencentWin32.Trojan-downloader.Small.Liql
MAXmalware (ai score=85)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Small.C!tr.dldr
Ad-AwareGeneric.Malware.Bdld.25CBA130
AVGFileRepMetagen [Malware]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Downloader.1d6

How to remove TrojanDownloader:Win32/Small!Z?

TrojanDownloader:Win32/Small!Z removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment