Trojan

Win32/TrojanDownloader.Small.PCK malicious file

Malware Removal

The Win32/TrojanDownloader.Small.PCK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Small.PCK virus can do?

  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Win32/TrojanDownloader.Small.PCK?


File Info:

name: 195D87EB91C65B7409EC.mlw
path: /opt/CAPEv2/storage/binaries/be3ca2bdca30c93c10864a73fcae49103641c8bbf9242b031686a76f30316ef6
crc32: A5E9D483
md5: 195d87eb91c65b7409eca546971bf9cd
sha1: 0bae4fadb122ec85c34c8f7c0ad171dc8379f197
sha256: be3ca2bdca30c93c10864a73fcae49103641c8bbf9242b031686a76f30316ef6
sha512: 7ee979e5923661cce2a6f82e3f96b61bbcac26c15fb7dbf22c2e1d617bcdc5b1b51e644750b618055a26f01a6d67d2c3f24ecfd61a15650a00b94605421b4de6
ssdeep: 768:RP8enyVtWNbSiXxyHI6tzRKCT2Q3y6Mn5xnXl0QiZWIQzTGf/:R0wByH/mC+/X5IQy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18B034C226B2BBF44DE137A74820161EBB9CAEDE0AB063D5C53303B3728755F19D179A1
sha3_384: ce291c9edf641989297a7fedb04c150a8dd04af49cdee6c715ec7a823d3c26b93a39d3f2d03e1b420712a561618a0af1
ep_bytes: 558bec5351e804000000925f00005b2b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Win32/TrojanDownloader.Small.PCK also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zbot.6
FireEyeGeneric.mg.195d87eb91c65b74
McAfeeArtemis!195D87EB91C6
CylanceUnsafe
ZillyaDownloader.Small.Win32.46323
K7AntiVirusTrojan ( 0021ac0d1 )
K7GWTrojan ( 0021ac0d1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Downloader_Small.C!Gen
SymantecW32.Priter
ESET-NOD32a variant of Win32/TrojanDownloader.Small.PCK
APEXMalicious
CynetMalicious (score: 100)
KasperskyPacked.Win32.Krap.ii
BitDefenderGen:Variant.Zbot.6
NANO-AntivirusVirus.Win32.CrazyPrier.lrspi
AvastWin32:Prier-B [Drp]
TencentTrojan.Win32.Downloader.aai
Ad-AwareGen:Variant.Zbot.6
EmsisoftGen:Variant.Zbot.6 (B)
ComodoTrojWare.Win32.PkdKrap.II@2tre83
DrWebTrojan.Click1.62283
VIPREGen:Variant.Zbot.6
TrendMicroWORM_OTORUN.SMAA
McAfee-GW-EditionBehavesLike.Win32.Backdoor.nh
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/EncPk-WA
IkarusTrojan.Cryptic
GDataGen:Variant.Zbot.6
JiangminTrojan/Agent.eizw
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=87)
ViRobotTrojan.Win32.Krap.Gen.A
ZoneAlarmPacked.Win32.Krap.ii
MicrosoftTrojanDownloader:Win32/Potentialdownloader.A
GoogleDetected
AhnLab-V3Trojan/Win32.Downloader.R3327
Acronissuspicious
ALYacGen:Variant.Zbot.6
MalwarebytesMalware.Heuristic.1004
TrendMicro-HouseCallWORM_OTORUN.SMAA
RisingWorm.Win32.FakeFolder.bh (CLASSIC)
YandexTrojan.Otorun.Gen!Pac
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Krap.II!tr
AVGWin32:Prier-B [Drp]
Cybereasonmalicious.b91c65
PandaTrj/Genetic.gen

How to remove Win32/TrojanDownloader.Small.PCK?

Win32/TrojanDownloader.Small.PCK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment