Malware

Win32/Small.NUC removal guide

Malware Removal

The Win32/Small.NUC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Small.NUC virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Small.NUC?


File Info:

crc32: 7697502E
md5: d4ecdd9070c47e8248a647033c9ea4d3
name: D4ECDD9070C47E8248A647033C9EA4D3.mlw
sha1: 0f06d292867ffbef88d8f22f3648d618d6bdc551
sha256: 801543860feda44937c78a67e2f54f1d62bd98b050c62b7e16505c00076bcbf0
sha512: 1870b15249f35d7886502b48d464b0bce48dfaeb0e14b229c610df7dbc9bf0f94564492412a0b73e57fb22191b952b057fe3b3bf00610af7e534646d2c4366e9
ssdeep: 384:5fhocvamy38DeB4efeN74m3KHtNHt8reuQMIfx0BT:5WuDeBRWqGqt8reuQMI6l
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Small.NUC also known as:

LionicTrojan.Win32.RotorCrypt.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ransom.RotorCrypt.8
ALYacGen:Variant.Ransom.RotorCrypt.8
CylanceUnsafe
AlibabaTrojan:Win32/RotorCrypt.2b3f1e29
Cybereasonmalicious.070c47
CyrenW32/Katusha.I.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Small.NUC
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
BitDefenderGen:Variant.Ransom.RotorCrypt.8
Ad-AwareGen:Variant.Ransom.RotorCrypt.8
SophosML/PE-A
ComodoMalware@#qnpptylp87v5
BitDefenderThetaGen:NN.ZexaF.34110.cmW@aazyEmb
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.d4ecdd9070c47e82
EmsisoftGen:Variant.Ransom.RotorCrypt.8 (B)
AviraHEUR/AGEN.1108149
GDataGen:Variant.Ransom.RotorCrypt.8
AhnLab-V3Malware/Win32.Generic.C3101536
McAfeeArtemis!D4ECDD9070C4
MAXmalware (ai score=100)
VBA32BScope.Trojan.Tiggre
PandaTrj/CI.A
RisingTrojan.Generic@ML.100 (RDML:tHJGhBKziLYF9QZ4mPfX6A)
YandexTrojan.GenAsa!Yn5xfP4bBcQ
IkarusTrojan.RotorCrypt
MaxSecureTrojan.Malware.7175203.susgen
FortinetW32/Katusha.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Small.NUC?

Win32/Small.NUC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment