Trojan

Trojan.CobaltStrike.AZ malicious file

Malware Removal

The Trojan.CobaltStrike.AZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.CobaltStrike.AZ virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan.CobaltStrike.AZ?


File Info:

crc32: E1EE9378
md5: 2d59f7e6c77edafd1160c2c6e4aec543
name: upload_file
sha1: ea771fa415f5b153827f7911c4d8998c79ee9a07
sha256: ffeab3a518bf3b9216d7a23d2ac471aa4cc9f2f45571d32677b5ef5b8d6a6ee1
sha512: a363dd3e9f7d8221f24169de790159071a161104c03f02bb9178ef2d21c98d4d0229544bdec0b377d4c81e21af70532fc309b8ab39cd22a6777bb1d99b1b8223
ssdeep: 6144:JGQ+cc6XvqRDYDgl5CiPTL3Do6aJRP9x:4Q9zXADtUiPT/B49x
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.CobaltStrike.AZ also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Meterpreter.72
MicroWorld-eScanTrojan.CobaltStrike.AZ
FireEyeGeneric.mg.2d59f7e6c77edafd
CAT-QuickHealTrojanAPT.Cobalt.B9
McAfeeTrojan-FSXF!2D59F7E6C77E
BitDefenderTrojan.CobaltStrike.AZ
Cybereasonmalicious.6c77ed
CyrenW64/Cobalt.A.gen!Eldorado
SymantecBackdoor.Cobalt!gen1
APEXMalicious
AvastWin64:Malware-gen
ClamAVWin.Trojan.CobaltStrike-9044898-1
KasperskyHEUR:Trojan.Win32.Generic
TencentMalware.Win32.Gencirc.10b3d957
Ad-AwareTrojan.CobaltStrike.AZ
SophosATK/Cobalt-A
InvinceaATK/Cobalt-A
McAfee-GW-EditionBehavesLike.Win64.Dropper.dc
EmsisoftTrojan.CobaltStrike.AZ (B)
SentinelOneDFI – Suspicious PE
JiangminTrojan.Generic.cbkmn
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1137815
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Cobaltstrike.MK!MTB
ArcabitTrojan.CobaltStrike.AZ
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.CobaltStrike.AZ
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Generic.C2513895
ALYacTrojan.CobaltStrike.AZ
MalwarebytesTrojan.Downloader
ESET-NOD32a variant of Win64/RiskWare.CobaltStrike.Artifact.A
RisingBackdoor.MeterPreter/x64!1.B96A (CLASSIC)
YandexTrojan.GenAsa!ZICJWVi3Ujg
MAXmalware (ai score=84)
eGambitUnsafe.AI_Score_57%
FortinetW64/Agent.CY!tr
AVGWin64:Malware-gen
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Trojan.CobaltStrike.AZ?

Trojan.CobaltStrike.AZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment