Trojan

Trojan-Downloader.Win32.Tovkater.cchq removal

Malware Removal

The Trojan-Downloader.Win32.Tovkater.cchq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.cchq virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
fruitnext.top
caribz.club

How to determine Trojan-Downloader.Win32.Tovkater.cchq?


File Info:

crc32: 1777BC6E
md5: bf836b2bdfb5fce8029b2a5fce791ccc
name: BF836B2BDFB5FCE8029B2A5FCE791CCC.mlw
sha1: da06b5667390d50751711fceba447d7dfb686fab
sha256: 24bfea1f7d48af7084fe524e9a5cf787a63a101093eee6a3671216f0b879b9dd
sha512: b8598878555cf583de6aba30f1c4b8783b33dceb2e81b814cc0304de3f30fdada74392c1a8e26b8bef0d0cfafe425c289ba19a11ccea90f32c4bc78964ee6f86
ssdeep: 6144:So4UQCWoQjuvyC/UZwB8to0u7+gtJr1N96Wm/3X/0KN1Bgc+jyp:6boQSvyO8tI+Ij6//p6FjS
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

Comments: jdtukyiuk tt nertumr tttttttttthdtyhertg q jfjjftyuklyilyuktyuklyiljftyuklyilv b s g xInstalls software 32
Translation: 0x0409 0x04b0

Trojan-Downloader.Win32.Tovkater.cchq also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 00520c311 )
LionicRiskware.Win32.Generic.1!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.9530
CynetMalicious (score: 100)
ALYacTrojan.Generic.22814140
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan-Downloader ( 00520c311 )
Cybereasonmalicious.bdfb5f
CyrenW32/Tovkater.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.IC
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Dropper.Tovkater-6646864-0
KasperskyTrojan-Downloader.Win32.Tovkater.cchq
BitDefenderTrojan.Generic.22814140
NANO-AntivirusRiskware.Win32.InstMonster.ewnofw
MicroWorld-eScanTrojan.Generic.22814140
TencentWin32.Trojan-downloader.Tovkater.Pjdj
Ad-AwareTrojan.Generic.22814140
SophosMal/Generic-S (PUA)
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.IC@7g83bp
BitDefenderThetaAI:Packer.FB10057E21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.bf836b2bdfb5fce8
EmsisoftTrojan.Generic.22814140 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.23D88C9
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D15C1DBC
GDataNSIS.Trojan-Downloader.Tovkater.C
AhnLab-V3PUP/Win32.Installer.C2332531
Acronissuspicious
McAfeeArtemis!BF836B2BDFB5
MAXmalware (ai score=100)
VBA32TrojanDownloader.Tovkater
MalwarebytesMalware.AI.4138619080
PandaTrj/Genetic.gen
RisingDownloader.Tovkater/NSIS!1.AF36 (CLASSIC:xWsXfH5EJDxBhazfLLURUg)
YandexTrojan.DL.Tovkater!jhT86Um3bzo
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.cchq?

Trojan-Downloader.Win32.Tovkater.cchq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment