Malware

How to remove “ATK/Cobalt-A”?

Malware Removal

The ATK/Cobalt-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ATK/Cobalt-A virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine ATK/Cobalt-A?


File Info:

crc32: B4EE671E
md5: da977ca12c4990e59598897e40e4e8d7
name: DA977CA12C4990E59598897E40E4E8D7.mlw
sha1: 50ffd5e0e0ac0876f61885f610d5d4f50465cf84
sha256: 8f3eb6ca303de759c0530906ad4675432d7d3361641b46413e12f325b4028081
sha512: c7af00076e2cc905a57d16fe1891b16a98ff6a0695612a50a781114e0dc86926a1aa36cdaa9355a46aff258c2f922ecbcb8cda727206bf1145a7b68e601cc079
ssdeep: 192:AqH+DgGK83SxHn2OQ/dmBI4KBfTgir+xzQdspobqUqV/Qjo7AGa:AG+kGKqbOCdWIVBff+xzXSfCXAn
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

ATK/Cobalt-A also known as:

BkavW32.AgentGoziMI.Trojan
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.2700
MicroWorld-eScanTrojan.GenericKD.34899658
FireEyeGeneric.mg.da977ca12c4990e5
CAT-QuickHealTrojan.Generic
ALYacTrojan.Agent.Rozena
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005622831 )
BitDefenderTrojan.GenericKD.34899658
K7GWTrojan ( 005622831 )
Cybereasonmalicious.12c499
InvinceaMal/Generic-R + ATK/Cobalt-A
CyrenW32/Diple.G.gen!Eldorado
SymantecBackdoor.Cobalt
TrendMicro-HouseCallTrojan.Win32.COBALT.SM
AvastWin32:Trojan-gen
ClamAVWin.Trojan.CobaltStrike-7899872-1
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Cobaltstrike.3c407009
NANO-AntivirusTrojan.Win32.Inject3.horsiq
ViRobotTrojan.Win32.Z.Rozena.14336.ET
AegisLabTrojan.Win32.Generic.4!c
TencentWin32.Trojan.Crypt.Wtnj
Ad-AwareTrojan.GenericKD.34899658
SophosATK/Cobalt-A
ComodoMalware@#largkbxrw9qt
ZillyaTrojan.Rozena.Win32.99309
TrendMicroTrojan.Win32.COBALT.SM
McAfee-GW-EditionCobalt-EVTS!DA977CA12C49
EmsisoftTrojan.GenericKD.34899658 (B)
IkarusTrojan.Win32.Rozena
JiangminTrojan.Generic.ftawl
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Cobaltstrike.MK!MTB
GridinsoftTrojan.Win32.Heur.oa!s1
ArcabitTrojan.Generic.D21486CA
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.34899658
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Dynamer.R329694
McAfeeCobalt-EVTS!DA977CA12C49
MAXmalware (ai score=82)
VBA32BScope.Trojan.Cometer
PandaTrj/GdSda.A
APEXMalicious
ESET-NOD32a variant of Win32/Rozena.AMZ
RisingBackdoor.Meterpreter!1.B96B (CLASSIC)
YandexTrojan.Agent!FQLZQoTT2zA
TACHYONTrojan/W32.Agent.14336.WO
FortinetW32/Generic.AP.118EACE!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/HEUR/QVM20.1.CC6B.Malware.Gen

How to remove ATK/Cobalt-A?

ATK/Cobalt-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment