Trojan

What is “Trojan-Downloader.Win32.Tovkater.cskj”?

Malware Removal

The Trojan-Downloader.Win32.Tovkater.cskj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.cskj virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
midnigntstranger.top
backverge.top

How to determine Trojan-Downloader.Win32.Tovkater.cskj?


File Info:

crc32: 5A7A6C40
md5: 4ad5153674028996dd0419fcf8211f47
name: 4AD5153674028996DD0419FCF8211F47.mlw
sha1: 4177dbc5e3d9b9cf5c0c4bbb44890c0380fed4c7
sha256: 097654d10478e1e74cff7febad6ab803e41bf61352fd61f568575d37039a2529
sha512: a56626a33f54cb111ab737ce9955e941aef5f20a797c464809745a7e6cd8313772c6495a9e01effd2077d10dd6cf017e5d8f1da4ef8c7c40065bc18087844b20
ssdeep: 24576:ZaozQ8gAOSWlhyLjA7d0OJj2/97/9nLJiyqC+CAkCox97Y4crflhi79wVkuJyi:iNSeYY7SOJjuD8yq77kX/rI9k7KVkul
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Downloader.Win32.Tovkater.cskj also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0051918e1 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2550
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46479843
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3411
SangforTrojan.Win32.Tovkater.IL
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0051918e1 )
Cybereasonmalicious.674028
CyrenW32/Tovkater.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646893-0
KasperskyTrojan-Downloader.Win32.Tovkater.cskj
BitDefenderTrojan.GenericKD.46479843
NANO-AntivirusTrojan.Win32.InstallMonster.exlcxj
MicroWorld-eScanTrojan.GenericKD.46479843
TencentWin32.Trojan-downloader.Tovkater.Pgnd
Ad-AwareTrojan.GenericKD.46479843
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.GC@7jimpe
BitDefenderThetaGen:NN.ZexaF.34266.toJfa4gYg7f
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.4ad5153674028996
EmsisoftTrojan.GenericKD.46479843 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.252C9B6
MicrosoftTrojan:Win32/Tovkater.A
ArcabitTrojan.Generic.D2C539E3
GDataNSIS.Trojan-Downloader.Tovkater.D
AhnLab-V3Downloader/Win32.Tovkater.R215698
Acronissuspicious
McAfeeArtemis!4AD515367402
MAXmalware (ai score=85)
VBA32Trojan.Wacatac
MalwarebytesMalware.AI.948103845
PandaTrj/CI.A
YandexTrojan.Agent!U0w9SO6wpIc
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.cskj?

Trojan-Downloader.Win32.Tovkater.cskj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment