Trojan

Trojan-Downloader.Win32.Tovkater.cbur information

Malware Removal

The Trojan-Downloader.Win32.Tovkater.cbur is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.cbur virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Behavior consistent with a dropper attempting to download the next stage.
  • Anomalous binary characteristics

Related domains:

fruitnext.top
caribz.club

How to determine Trojan-Downloader.Win32.Tovkater.cbur?


File Info:

crc32: 6E2C5BCE
md5: 1f8e726e6e80decffd9947e8309a2fd9
name: 1F8E726E6E80DECFFD9947E8309A2FD9.mlw
sha1: b9ecf5280d236750044b999ac585beb3373a31b8
sha256: 1a4066b85c61a5de320c14cde7b1bb179b722f0ea5bf30f5b12e45b24256d51d
sha512: 1f7b9dea989b6126b916cbc624628562712b6eac12837aaa4a189b8c130c12760c8ff051670c44c16f7e10a13c5897bf7b1ab762aa93e55535a5495564fb9667
ssdeep: 6144:So4UQCWoQjuvyC/UZwB8to0u7+gtJr1N96Wm/3X/0KN1Bgc7Axa:6boQSvyO8tI+Ij6//p66Axa
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

Comments: jdtukyiuk tt nertumr tttttttttthdtyhertg q jfjjftyuklyilyuktyuklyiljftyuklyilv b s g xInstalls software 32
Translation: 0x0409 0x04b0

Trojan-Downloader.Win32.Tovkater.cbur also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 00520e9e1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.9530
CynetMalicious (score: 100)
ALYacTrojan.Generic.22814140
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan-Downloader ( 00520e9e1 )
Cybereasonmalicious.e6e80d
CyrenW32/Tovkater.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.IC
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Dropper.Tovkater-6646864-0
KasperskyTrojan-Downloader.Win32.Tovkater.cbur
BitDefenderTrojan.Generic.22814140
NANO-AntivirusRiskware.Win32.InstMonster.ewnofw
MicroWorld-eScanTrojan.Generic.22814140
TencentWin32.Trojan-downloader.Tovkater.Ebrq
Ad-AwareTrojan.Generic.22814140
SophosMal/Generic-S
ComodoMalware@#t00dajooigv8
BitDefenderThetaAI:Packer.FB10057E21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.1f8e726e6e80decf
EmsisoftTrojan.Generic.22814140 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.23D88C9
MicrosoftTrojan:Win32/Azorult!ml
GDataNSIS.Trojan-Downloader.Tovkater.C
AhnLab-V3PUP/Win32.Installer.C2332531
Acronissuspicious
McAfeeArtemis!1F8E726E6E80
MAXmalware (ai score=100)
VBA32TrojanDownloader.Tovkater
PandaTrj/Genetic.gen
RisingDownloader.Tovkater/NSIS!1.AF36 (CLASSIC)
YandexTrojan.DL.Tovkater!jhT86Um3bzo
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.cbur?

Trojan-Downloader.Win32.Tovkater.cbur removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment