Malware

What is “Win32:Small-HTZC [Trj]”?

Malware Removal

The Win32:Small-HTZC [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Small-HTZC [Trj] virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine Win32:Small-HTZC [Trj]?


File Info:

crc32: 0AF32187
md5: 5afbcde59ae65310c09a144383811b35
name: 5AFBCDE59AE65310C09A144383811B35.mlw
sha1: b41b733ad9582946a4d53d88232fa609ac3ada3d
sha256: 4c59ff29b64dd8ed999cdbb856a11d428ffa2ef98dbe5493554c6955a083d20f
sha512: 756b78d9909a7d3a70b38ce82559ec98d1187c271135198621b1acaeec86b426b4fc1c091a2c51b43b18816da75b4771b4dd464ff2506267919ad092c1f018f8
ssdeep: 768:Kf1K2exg2kBwtdgI2MyzNORQtOflIwoHNV2XBFV72BOlA7ZsBGGpebVIYLHA3bcd:o1KhxqwtdgI2MyzNORQtOflIwoHNV2Xk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32:Small-HTZC [Trj] also known as:

BkavW32.HazinosT.Trojan
K7AntiVirusTrojan-Downloader ( 00457c511 )
DrWebTrojan.DownLoad3.28161
MicroWorld-eScanTrojan.GenericKD.1311021
CMCTrojan-Spy.Win32.Zbot!O
McAfeeDownloader-FTT!5AFBCDE59AE6
CylanceUnsafe
ZillyaTrojan.Bublik.Win32.12206
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:Win32/Upatre.5c2c1344
K7GWTrojan-Downloader ( 00457c511 )
Cybereasonmalicious.59ae65
TrendMicroTROJ_UPATRE.PA
BaiduWin32.Trojan-Downloader.Small.ck
CyrenW32/Trojan.SKUP-8129
ESET-NOD32Win32/TrojanDownloader.Small.AAB
ZonerTrojan.Win32.18131
APEXMalicious
AvastWin32:Small-HTZC [Trj]
ClamAVWin.Trojan.Upatre-3340
GDataTrojan.GenericKD.1311021
KasperskyTrojan-Spy.Win32.Zbot.qzxr
BitDefenderTrojan.GenericKD.1311021
NANO-AntivirusTrojan.Win32.DownLoad3.cmcvvp
ViRobotDropper.U.Agent.25600.A
TencentMalware.Win32.Gencirc.10b079c9
Ad-AwareTrojan.GenericKD.1311021
SophosTroj/Agent-AEAX
ComodoTrojWare.Win32.TrojanDownloader.Upatre.MAUA@5rueuc
F-SecureTrojan.TR/Agent.Agy.4
BitDefenderThetaGen:NN.ZexaF.34110.cq2@aGFXBJbi
VIPRETrojan.Win32.Kryptik.blub (v)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.nm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.5afbcde59ae65310
EmsisoftTrojan.GenericKD.1311021 (B)
F-ProtW32/Trojan3.GCZ
Endgamemalicious (high confidence)
WebrootW32.Trojan.Gen
AviraTR/Agent.Agy.4
Antiy-AVLTrojan/Win32.Unknown
MicrosoftTrojanDownloader:Win32/Upatre.A
JiangminTrojan/Bublik.gja
ArcabitTrojan.Generic.D14012D
AegisLabTrojan.Win32.Generic.lNlt
ZoneAlarmTrojan-Spy.Win32.Zbot.qzxr
AhnLab-V3Trojan/Win32.Zbot.C205277
Acronissuspicious
VBA32BScope.Trojan.Download
MAXmalware (ai score=85)
MalwarebytesTrojan.Email.FA
PandaGeneric Malware
TrendMicro-HouseCallTROJ_UPATRE.PA
RisingSpyware.Zbot!8.16B (TFE:dGZlOgKnfMT5QJAfJg)
YandexTrojan.Bublik!7ZwW6dY5BGg
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Upatre.Gen
FortinetW32/Mdrop.AAB!tr
AVGWin32:Small-HTZC [Trj]
Qihoo-360Win32/Trojan.Spy.f4f

How to remove Win32:Small-HTZC [Trj]?

Win32:Small-HTZC [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment