Trojan

About “Trojan-Downloader.Win32.Tovkater.cskw” infection

Malware Removal

The Trojan-Downloader.Win32.Tovkater.cskw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.cskw virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
midnigntstranger.top
backverge.top

How to determine Trojan-Downloader.Win32.Tovkater.cskw?


File Info:

crc32: DE07B07C
md5: e2fffecb39201d8d3cc514c6cf5a6c11
name: E2FFFECB39201D8D3CC514C6CF5A6C11.mlw
sha1: a0a6474c2aa9f2996e6c836771936ff7ec1c4a71
sha256: 1df187ac2a14b40a827882a5cfbdb44d7b69b3cfc56e41d7281c0ac6eaea47ea
sha512: a41164037f5d10e1f365e22cc747d3dcce9eae3c30264419cfeeb1afcc6b7b3a6cfdacc95c750bbdf47690cdad16cac253440fcb915d7453c2d4859ba3d81e3e
ssdeep: 24576:ZaozQ8gAOSWlhyLjA7d0OJj2/97/9nLJiyqC+CAkCox97Y4crflhi79wVkuJ2D:iNSeYY7SOJjuD8yq77kX/rI9k7KVkuq
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Downloader.Win32.Tovkater.cskw also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0051918e1 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2550
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46479843
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3411
SangforTrojan.Win32.Tovkater.IL
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0051918e1 )
Cybereasonmalicious.b39201
CyrenW32/Tovkater.W.gen!Eldorado
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646893-0
KasperskyTrojan-Downloader.Win32.Tovkater.cskw
BitDefenderTrojan.GenericKD.46479843
NANO-AntivirusTrojan.Win32.InstallMonster.exlcxj
MicroWorld-eScanTrojan.GenericKD.46479843
TencentWin32.Trojan-downloader.Tovkater.Alsp
Ad-AwareTrojan.GenericKD.46479843
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.GC@7jimpe
BitDefenderThetaGen:NN.ZexaF.34266.toJfa4gYg7f
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.e2fffecb39201d8d
EmsisoftTrojan.GenericKD.46479843 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.252C9B6
MicrosoftTrojan:Win32/Tovkater.A
GDataNSIS.Trojan-Downloader.Tovkater.D
AhnLab-V3Downloader/Win32.Tovkater.R215698
Acronissuspicious
McAfeeArtemis!E2FFFECB3920
MAXmalware (ai score=85)
VBA32Trojan.Wacatac
MalwarebytesMalware.AI.948103845
PandaTrj/CI.A
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.cskw?

Trojan-Downloader.Win32.Tovkater.cskw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment