Trojan

Should I remove “TrojanDownloader:Win32/Sysfade.B”?

Malware Removal

The TrojanDownloader:Win32/Sysfade.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Sysfade.B virus can do?

  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Touches a file containing cookies, possibly for information gathering
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities

How to determine TrojanDownloader:Win32/Sysfade.B?


File Info:

name: 7C7BD195637ED9A2E9C2.mlw
path: /opt/CAPEv2/storage/binaries/e3c07d5998cd6a2286c87e65261704b18bf2cac7d0c21d78ce1c2f960378e130
crc32: E90EBF28
md5: 7c7bd195637ed9a2e9c219bbe09fddb5
sha1: d1e419bc5ecc72d7da058ce2b53e0a4a91e0965d
sha256: e3c07d5998cd6a2286c87e65261704b18bf2cac7d0c21d78ce1c2f960378e130
sha512: bd0d082db889862bf59c757d394a67aadd5958cc46573e9230f8db1e0c447b3eb3be3c86aa8fd95f547eb6e942f9555017a9f67850048bb8731733e1a66fab0e
ssdeep: 6144:rqaKvl+yO5717ZxwMd483KXdV5CmEhIAsdxn6sM0TZMl9VJdzh5vaBAzuHs:WaUl+yO5717ZtK7EhIAsdxn6sM0TZMl1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C9446C25B0C5C47ACB0E00F4C9C66BFEA6E96DBCD91151835FC4BF2DBA329A68512347
sha3_384: a08b2b84a89953051a95588f963121545304023869f11281786ba2198c26f08e78167201e2e583f234c4f26d47b9864c
ep_bytes: 558bec6aff6828824200687405410064
timestamp: 2010-07-29 05:43:21

Version Info:

0: [No Data]

TrojanDownloader:Win32/Sysfade.B also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
MicroWorld-eScanTrojan.Generic.6304245
ClamAVWin.Downloader.96481-1
FireEyeGeneric.mg.7c7bd195637ed9a2
CAT-QuickHealTrojanDownloader.Agent
ALYacTrojan.Generic.6304245
Cylanceunsafe
ZillyaDownloader.Agent.Win32.68341
SangforPUP.Win32.StartPage.Vq8s
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_28620.None
K7GWTrojan ( 00565a671 )
K7AntiVirusTrojan ( 00565a671 )
ArcabitTrojan.Generic.D6031F5
BitDefenderThetaAI:Packer.CE9169331E
VirITTrojan.Win32.Generic.FSM
CyrenW32/Trojan.QIXU-7273
SymantecAdware.Favorit
Elasticmalicious (high confidence)
ESET-NOD32Win32/StartPage.NVY
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Agent.ecvt
BitDefenderTrojan.Generic.6304245
NANO-AntivirusTrojan.Win32.Agent.bpcli
AvastWin32:StartPage-ALY [Trj]
TencentTrojan.Win32.Downloader.abi
TACHYONTrojan-Downloader/W32.Agent.274432.AU
SophosMal/Generic-R
F-SecureTrojan.TR/Downloader.Gen
DrWebTrojan.DownLoad2.14890
VIPRETrojan.Generic.6304245
TrendMicroTROJ_DLOAD.SMCV
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
EmsisoftTrojan.Generic.6304245 (B)
IkarusTrojan-Downloader.Win32.Gamov
JiangminTrojanDownloader.Generic.agd
WebrootW32.Malware.Gen
AviraTR/Downloader.Gen
Antiy-AVLTrojan[Downloader]/Win32.Agent
XcitiumTrojWare.Win32.Downloader.Agent.ecvt@23m9x0
MicrosoftTrojanDownloader:Win32/Sysfade.B
ViRobotTrojan.Win32.A.Downloader.274432.H
ZoneAlarmTrojan-Downloader.Win32.Agent.ecvt
GDataTrojan.Generic.6304245
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R6934
McAfeeDownloader-CKO
MAXmalware (ai score=80)
VBA32TrojanDownloader.Agent
MalwarebytesMalware.AI.2737249420
PandaGeneric Malware
TrendMicro-HouseCallTROJ_DLOAD.SMCV
RisingTrojan.Win32.Fednu.amu (CLASSIC)
YandexTrojan.GenAsa!PCsQ8PJzzXQ
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.ECVT!tr.dldr
AVGWin32:StartPage-ALY [Trj]
Cybereasonmalicious.5637ed
DeepInstinctMALICIOUS

How to remove TrojanDownloader:Win32/Sysfade.B?

TrojanDownloader:Win32/Sysfade.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment