Trojan

About “Trojan-Downloader.Win32.Tovkater.ccbd” infection

Malware Removal

The Trojan-Downloader.Win32.Tovkater.ccbd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.ccbd virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
fruitnext.top
caribz.club

How to determine Trojan-Downloader.Win32.Tovkater.ccbd?


File Info:

crc32: EA7375B4
md5: 1d055ff915efb752da19c8ab7b0e715c
name: 1D055FF915EFB752DA19C8AB7B0E715C.mlw
sha1: ed2e49b90e32de4525432d716ec7c6f380edcf85
sha256: 1e174d4074ae02a171471f015244a7020843cc4924926f0e9a57cff4260aa554
sha512: ad9ff354efc9174d004a07d7e5cb646be8cc731b24e4d243003425bd2fd22bf70cca2e2ce692d960807a50b5a794eb5aa9dc3678fba15a189f29ecf33f346832
ssdeep: 6144:So4UQCWoQjuvyC/UZwB8to0u7+gtJr1N96Wm/3X/0KN1BgcfIp:6boQSvyO8tI+Ij6//p61p
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

Comments: jdtukyiuk tt nertumr tttttttttthdtyhertg q jfjjftyuklyilyuktyuklyiljftyuklyilv b s g xInstalls software 32
Translation: 0x0409 0x04b0

Trojan-Downloader.Win32.Tovkater.ccbd also known as:

K7AntiVirusTrojan-Downloader ( 00520e9e1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.9530
CynetMalicious (score: 100)
ALYacTrojan.Generic.22814140
CylanceUnsafe
SangforTrojan.Win32.Tovkater.IC
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanDownloader:Win32/Tovkater.58eef7fa
K7GWTrojan-Downloader ( 00520e9e1 )
Cybereasonmalicious.915efb
CyrenW32/Tovkater.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.IC
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Dropper.Tovkater-6646864-0
KasperskyTrojan-Downloader.Win32.Tovkater.ccbd
BitDefenderTrojan.Generic.22814140
NANO-AntivirusRiskware.Win32.InstMonster.ewnofw
MicroWorld-eScanTrojan.Generic.22814140
TencentWin32.Trojan-downloader.Tovkater.Dxwv
Ad-AwareTrojan.Generic.22814140
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.IC@7g83bp
BitDefenderThetaAI:Packer.FB10057E21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.1d055ff915efb752
EmsisoftTrojan.Generic.22814140 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.23D88C9
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D15C1DBC
GDataNSIS.Trojan-Downloader.Tovkater.C
AhnLab-V3PUP/Win32.Installer.C2332531
Acronissuspicious
McAfeeArtemis!1D055FF915EF
MAXmalware (ai score=97)
VBA32TrojanDownloader.Tovkater
MalwarebytesMalware.AI.4138619080
PandaTrj/Genetic.gen
RisingDownloader.Tovkater/NSIS!1.AF36 (CLASSIC:xWsXfH5EJDxBhazfLLURUg)
YandexTrojan.DL.Tovkater!jhT86Um3bzo
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.ccbd?

Trojan-Downloader.Win32.Tovkater.ccbd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment