We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Small.BCF
Detected by Microsoft Defender Antivirus
Aliases: Win32/SillyDl.RW (CA) Win32/SillyDL.1680!Trojan (CA) Trojan-Downloader.Win32.Small.bcf (Kaspersky) Downloader-ABC (McAfee) TROJ_SMALL.AME (Trend Micro)
Summary
TrojanDownloader:Win32/Small.BCF downloads a program to the host computer from a URL that is specified in the trojan file. The trojan then runs the downloaded program without notifying the user. The trojan conceals itself and bypasses local software firewall policies by injecting a portion of its code into the Windows explorer.exe process and running from within that process context.
A trojan downloader may install additional malicious software to impacted systems, thus attempting manual removal of TrojanDownloader:Win32/Small.BCF is not recommended. To detect and remove this Trojan downloader, as well as other software it may have installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx