Trojan

Trojan-Downloader.Win32.Tovkater.bwsd information

Malware Removal

The Trojan-Downloader.Win32.Tovkater.bwsd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.bwsd virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
fruitnext.top
caribz.club

How to determine Trojan-Downloader.Win32.Tovkater.bwsd?


File Info:

crc32: 478ECA2E
md5: 2aa57ac0ee6d858a3562693cd7f49a43
name: 2AA57AC0EE6D858A3562693CD7F49A43.mlw
sha1: 7f01a396a982cd837f0311a7ff0147e5de236473
sha256: ddaa23069d7faf5214fa6738149ad066df696ed966d2fa1f4572c6a5a5c43620
sha512: c113ffef072bff61e892eb23639f310bad2ec5b75494a74875c7a0af74e4583f664e095da803b4191e24eebd23d5d8a232c46d02cdb873562c9c239615f31a36
ssdeep: 3072:SrV1c41UtsuHMWo6oKZSdyb086cpvrWLYCs:So4U5MWo/KGyccIPs
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

Comments: ndghmfjuyndtyndyt jjjftyuklyilyukjftyuklyilyuk bstrbhbstrbhbstrbh sdvsdvsdvbernuyb ernuy xInstalls software 32
Translation: 0x0409 0x04b0

Trojan-Downloader.Win32.Tovkater.bwsd also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Nemesis.617
FireEyeGeneric.mg.2aa57ac0ee6d858a
CAT-QuickHealTrojan.Multi
McAfeeArtemis!2AA57AC0EE6D
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Nemesis.617
K7GWTrojan-Downloader ( 0051fe941 )
K7AntiVirusTrojan-Downloader ( 0051fe941 )
CyrenW32/Trojan.XJKZ-4359
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Tovkater-6956309-0
KasperskyTrojan-Downloader.Win32.Tovkater.bwsd
NANO-AntivirusTrojan.Win32.InstallMonster.ewmtxy
AegisLabTrojan.Win32.Generic.4!c
TencentWin32.Trojan-downloader.Tovkater.Htmj
Ad-AwareTrojan.GenericKD.44116785
SophosMal/Generic-S
ComodoMalware@#281naldwiddyi
F-SecureAdware.ADWARE/InstMonster.Gen7
DrWebTrojan.InstallMonster.2507
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftGen:Variant.Nemesis.617 (B)
SentinelOneStatic AI – Malicious PE – Downloader
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Nemesis.617
ZoneAlarmTrojan-Downloader.Win32.Tovkater.bwsd
GDataNSIS.Trojan-Downloader.Tovkater.C
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.Downloader.R216717
Acronissuspicious
BitDefenderThetaAI:Packer.697A5C891E
ALYacTrojan.GenericKD.44116785
MAXmalware (ai score=99)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
ESET-NOD32multiple detections
RisingDownloader.Tovkater!1.AF36 (CLASSIC:bWQ1OoH38E6ROYVHMaxlU0VCbS8)
YandexTrojan.GenAsa!qhYl4EpQjKc
IkarusTrojan-Downloader.Win32.Tovkater
eGambitUnsafe.AI_Score_99%
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.0ee6d8
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Downloader.862

How to remove Trojan-Downloader.Win32.Tovkater.bwsd?

Trojan-Downloader.Win32.Tovkater.bwsd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment