Trojan

Trojan.CobaltStrike.AS removal instruction

Malware Removal

The Trojan.CobaltStrike.AS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.CobaltStrike.AS virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.CobaltStrike.AS?


File Info:

crc32: 8056D273
md5: 197f5f716a32dfdb06068b0c1786c2bf
name: upload_file
sha1: 8bd408ced0ce701fa2527bbaf88065a1d180c13d
sha256: 0a3fec45848cac6231aeccad4cf934c7d003a26e8400a13207e3e976aefa6f76
sha512: 2cd0f7d04177f9cde2e5ba7554e816afb10e0020a04371697406c82a7b6c9f4c82e94a3a4cc90935943bf00840ea653af7b17ea91051427b043c62b780212373
ssdeep: 6144:gRsxb0+uIQVah23/AeiAWIJJa9w+pUvKVe4V:gYq/A9dw+pPV
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.CobaltStrike.AS also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.CobaltStrike.AS
FireEyeGeneric.mg.197f5f716a32dfdb
CAT-QuickHealTrojanAPT.Cobalt.A7
McAfeeTrojan-FQRU!197F5F716A32
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 005622831 )
BitDefenderTrojan.CobaltStrike.AS
K7GWTrojan ( 005622831 )
Cybereasonmalicious.16a32d
CyrenW32/Diple.F.gen!Eldorado
SymantecBackdoor.Cobalt!gen3
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.CobaltStrike-7899872-1
KasperskyHEUR:Trojan.Win32.Cometer.gen
NANO-AntivirusTrojan.Win32.Rozena.faqakq
ViRobotTrojan.Win32.Agent.284672.R
TencentMalware.Win32.Gencirc.10b3bac5
Ad-AwareTrojan.CobaltStrike.AS
DrWebBackDoor.Meterpreter.92
VIPRETrojan.Win32.Generic!BT
InvinceaATK/Cobalt-A
McAfee-GW-EditionTrojan-FQRU!197F5F716A32
SophosATK/Cobalt-A
IkarusTrojan.Win32.Rozena
JiangminTrojan.Generic.ccimf
WebrootW32.Malware.Gen
AviraTR/Crypt.XPACK.Gen7
eGambitUnsafe.AI_Score_74%
MicrosoftTrojan:Win32/Swrort!rfn
ArcabitTrojan.CobaltStrike.AS
ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
GDataWin32.Trojan.CobaltStrike.HB0VY2
TACHYONTrojan/W32.Agent.284672.IM
AhnLab-V3Trojan/Win32.RL_Dynamer.R329694
Acronissuspicious
BitDefenderThetaAI:Packer.F1A7262A1A
ALYacTrojan.CobaltStrike.AS
MAXmalware (ai score=87)
VBA32Backdoor.Meterpreter
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Rozena.AMZ
RisingBackdoor.Meterpreter!1.B96B (CLASSIC)
YandexTrojan.GenAsa!/C5jzoNrl5s
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Generic.AC.416F47
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.44b

How to remove Trojan.CobaltStrike.AS?

Trojan.CobaltStrike.AS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment