Trojan

About “Win64/TrojanDownloader.Small.H” infection

Malware Removal

The Win64/TrojanDownloader.Small.H is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/TrojanDownloader.Small.H virus can do?

  • Uses Windows utilities for basic functionality
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Win64/TrojanDownloader.Small.H?


File Info:

name: E9B80C9336583B4FCF36.mlw
path: /opt/CAPEv2/storage/binaries/2f66189b5f786b3afd70105ac07787e39ccbf0ecad2325707fe4bf3782915f99
crc32: 78A71F78
md5: e9b80c9336583b4fcf3665dbb0e54a09
sha1: c6d1753c590814e81ea64d9b18cabf606ec06e75
sha256: 2f66189b5f786b3afd70105ac07787e39ccbf0ecad2325707fe4bf3782915f99
sha512: dc4ff66b9f44a7c5bb2a2db286aaad8fa806bca89d489a4bea0aa9b1e04c870f51ba9fac4e405b6c5e8138e7c72d747c3b6a1ed3d17ff016c51da66a22aed945
ssdeep: 96:9mqtHIXYKgGEEXCaikG+rO8Tr3y4VBor:9jIX5EEXCT+rOIor
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T10DB10D7BD28698B8C22F45F7AF9AD09A222AF4D043C2702AC3705F753F96978365814D
sha3_384: e2a047eb2103c423d9ceb77f6885b37a84085abad75e8ac02bd33576acdae9afabbeb1bfc302a3e13bf292d0e4db3e6e
ep_bytes: 554889e54881ec50000000b800000000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Win64/TrojanDownloader.Small.H also known as:

BkavW64.AIDetectMalware
LionicTrojan.Win32.Ggof.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader46.21508
MicroWorld-eScanTrojan.Agent.GGOF
FireEyeTrojan.Agent.GGOF
SkyhighBehavesLike.Win64.Malware.zt
McAfeeArtemis!E9B80C933658
MalwarebytesTrojan.Downloader
ZillyaDownloader.Agent.Win32.526041
SangforDownloader.Win64.Tiny.V6qk
K7AntiVirusTrojan ( 005ab3501 )
AlibabaTrojanDownloader:Win64/TrollAV.961dea41
K7GWTrojan ( 005ab3501 )
Cybereasonmalicious.c59081
ArcabitTrojan.Agent.GGOF
SymantecDownloader
ESET-NOD32a variant of Win64/TrojanDownloader.Small.H
CynetMalicious (score: 100)
ClamAVWin.Malware.Ggof-10009966-0
Kasperskynot-a-virus:HEUR:RiskTool.Win64.TrollAV.gen
BitDefenderTrojan.Agent.GGOF
AvastWin64:DropperX-gen [Drp]
TencentTrojan-DL.Win32.Small.kq
Ad-AwareTrojan.Agent.GGOF
EmsisoftTrojan.Agent.GGOF (B)
F-SecureTrojan.TR/Tiny.rxgbb
VIPRETrojan.Agent.GGOF
TrendMicroTROJ_GEN.R002C0DIK23
SophosTroj/Dloadr-EGX
JiangminTrojanDownloader.Agent.gdxh
VaristW64/Tiny.M.gen!Eldorado
AviraTR/Tiny.rxgbb
MAXmalware (ai score=82)
Antiy-AVLTrojan[Downloader]/Win64.Small
MicrosoftTrojan:Win32/Tiny.EB!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win64.TrollAV.gen
GDataWin64.Trojan-Downloader.Tiny.H
GoogleDetected
AhnLab-V3Downloader/Win.Tiny.R604302
VBA32Downloader.Win64.Tiny
ALYacTrojan.Agent.GGOF
TACHYONTrojan/W64.Agent.5120.CH
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0DIK23
RisingDownloader.Small!8.B41 (TFE:5:mMgYGMxROYV)
IkarusTrojan-Downloader.Small
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Agent.GGOF!tr.dldr
AVGWin64:DropperX-gen [Drp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win64/TrojanDownloader.Small.H?

Win64/TrojanDownloader.Small.H removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment