Trojan

About “Trojan-Downloader.Win32.Tovkater.cyxn” infection

Malware Removal

The Trojan-Downloader.Win32.Tovkater.cyxn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Tovkater.cyxn virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Anomalous binary characteristics

Related domains:

midnigntstranger.top
backverge.top

How to determine Trojan-Downloader.Win32.Tovkater.cyxn?


File Info:

crc32: 7AB04A75
md5: 11e5fe29d2752aae4e231b6c8fe8a5ff
name: 11E5FE29D2752AAE4E231B6C8FE8A5FF.mlw
sha1: dca4d7ed9f5d3de946c8751eee66d52caaa7d182
sha256: 0977d623e4caf9bdd384b2cacc667a9427242148b19e18a930d3bbf5f727a13b
sha512: 0629d0692e519c4ece4e1dbc9e7a8bf1e97ba72e90029a41537575e6a23c6ae97eaf2929d09401930b61d82e134c07c709f12533daaab5f257bc7e35c1dc6c5e
ssdeep: 24576:ayoH+dzexq/2nAzMwakYwxn4uMzzTIrtXoWUKlK/cylIcPzfzwGriX8xkY:ESSo/2nAzua4dgUKlKlfxriMKY
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: cvbjtgqxjwnryhry ertjfyujvwdyetxEl BARTA. All rights reserved.
FileVersion: 352.4441.4.6
CompanyName: hvbnthwxhbsrtbry cvbnvbnmmgwgtr gerthmBRAZZERS
Comments: fghgyjezgndryhdry fgjhvfgjhjherbforce Installs software 32
ProductName: fertykzrfdsrhry dfghdfghhiforce4 NSIS 3 easy installer
ProductVersion: 864.6534.74.9
Translation: 0x0409 0x04b0

Trojan-Downloader.Win32.Tovkater.cyxn also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan-Downloader ( 0052d8561 )
DrWebTrojan.InstallMonster.2637
CynetMalicious (score: 100)
ALYacGen:Variant.Bulz.495867
CylanceUnsafe
ZillyaDownloader.Tovkater.Win32.875
SangforTrojan.Win32.Tovkater.IL
CrowdStrikewin/malicious_confidence_90% (D)
K7GWTrojan-Downloader ( 0052d8561 )
Cybereasonmalicious.9d2752
CyrenW32/Tovkater.AB.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Tovkater.IL
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646885-0
KasperskyTrojan-Downloader.Win32.Tovkater.cyxn
BitDefenderGen:Variant.Bulz.495867
NANO-AntivirusTrojan.Win32.Tovkater.eybrqq
MicroWorld-eScanGen:Variant.Bulz.495867
Ad-AwareGen:Variant.Bulz.495867
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.GC@7jimpe
BitDefenderThetaGen:NN.ZexaF.34236.@@Z@a4DaLMm
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DJG21
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.11e5fe29d2752aae
EmsisoftGen:Variant.Bulz.495867 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.34834DE
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Bulz.495867
Acronissuspicious
McAfeeArtemis!11E5FE29D275
MAXmalware (ai score=98)
VBA32Trojan.InstallMonster
MalwarebytesTrojan.Downloader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DJG21
YandexTrojan.DL.Tovkater!Q9WRXSHbaIM
IkarusTrojan-Downloader.Win32.Tovkater
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Tovkater.cyxn?

Trojan-Downloader.Win32.Tovkater.cyxn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment