Trojan

How to remove “Trojan-Downloader.Win32.Tovkater.csii”?

Malware Removal

The Trojan-Downloader.Win32.Tovkater.csii is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.csii virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
midnigntstranger.top
backverge.top

How to determine Trojan-Downloader.Win32.Tovkater.csii?


File Info:

crc32: C857FD7B
md5: 5e61de727f59b530319a3a019f44da06
name: 5E61DE727F59B530319A3A019F44DA06.mlw
sha1: 64884fb9398714a1bf136f1120f3ab988311940a
sha256: 237a601a3342f8f4ddb82d44d7ea998c23163d1a984f204551c23cac6ff90fe5
sha512: 4aabdf15dddab4ef4baaad27f4e9442306f0696b28b6d4937ea010d1fe41627b7de5a285bd134b99bd82b2eebd7cf8756a7028a9035af2c7226a98e7ae001efe
ssdeep: 24576:ZaozQ8gAOSWlhyLjA7d0OJj2/97/9nLJiyqC+CAkCox97Y4crflhi79wVkuJVB:iNSeYY7SOJjuD8yq77kX/rI9k7KVkuN
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Downloader.Win32.Tovkater.csii also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0051918e1 )
LionicTrojan.Win32.Tovkater.a!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2550
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46479843
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3411
SangforTrojan.Win32.Tovkater.IL
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0051918e1 )
Cybereasonmalicious.27f59b
CyrenW32/Tovkater.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646893-0
KasperskyTrojan-Downloader.Win32.Tovkater.csii
BitDefenderTrojan.GenericKD.46479843
NANO-AntivirusTrojan.Win32.InstallMonster.exlcxj
MicroWorld-eScanTrojan.GenericKD.46479843
TencentWin32.Trojan-downloader.Tovkater.Syib
Ad-AwareTrojan.GenericKD.46479843
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.GC@7jimpe
BitDefenderThetaGen:NN.ZexaF.34294.toJfa4gYg7f
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.5e61de727f59b530
EmsisoftTrojan.GenericKD.46479843 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.252C9B6
MicrosoftTrojan:Win32/Tovkater.A
GDataNSIS.Trojan-Downloader.Tovkater.D
AhnLab-V3Downloader/Win32.Tovkater.R215698
Acronissuspicious
McAfeeArtemis!5E61DE727F59
MAXmalware (ai score=82)
VBA32Trojan.Wacatac
MalwarebytesMalware.AI.948103845
PandaTrj/CI.A
YandexTrojan.Agent!U0w9SO6wpIc
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.csii?

Trojan-Downloader.Win32.Tovkater.csii removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment