Trojan

TrojanAPT.Cobalt.A7 information

Malware Removal

The TrojanAPT.Cobalt.A7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanAPT.Cobalt.A7 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine TrojanAPT.Cobalt.A7?


File Info:

crc32: 3B708124
md5: 88b51a95c1f59b94e7a3d639f1c09529
name: cs32.exe
sha1: 84544654b9fc8d32c1f28e4e1687f606e91b8298
sha256: d587d29bd55768099f37c62c2fb94cae86c741aea8598ba81c78b9dc9d326719
sha512: b3a8c420411aa02edd95ce6dd577fc9f0aee1464a2666d8aa71b43a8472cff69f0eec37fedb589853991ef6cae3a1fa3abddb30ee865e51adfda42665fb9ee64
ssdeep: 6144:HRHug1hgJpTorB+kmvPsf0Ao9qYZ2wzTFzWt5ZqS2UTH:HdbCJOB+kmXs8XqYZLzTFzWt5ZyUz
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

TrojanAPT.Cobalt.A7 also known as:

MicroWorld-eScanGen:Trojan.Heur.rCW@Ijw8qbd
FireEyeGeneric.mg.88b51a95c1f59b94
CAT-QuickHealTrojanAPT.Cobalt.A7
CylanceUnsafe
BitDefenderGen:Trojan.Heur.rCW@Ijw8qbd
Cybereasonmalicious.5c1f59
TrendMicroTrojan.Win32.COBALT.SM
BitDefenderThetaAI:Packer.A5F624021B
CyrenW32/Diple.F.gen!Eldorado
TrendMicro-HouseCallTrojan.Win32.COBALT.SM
AvastWin32:Malware-gen
GDataGen:Trojan.Heur.rCW@Ijw8qbd
KasperskyHEUR:Trojan.Win32.Cometer.gen
NANO-AntivirusTrojan.Win32.Rozena.faqakq
ViRobotTrojan.Win32.Agent.284672.R
APEXMalicious
TencentMalware.Win32.Gencirc.10b3bac5
Ad-AwareGen:Trojan.Heur.rCW@Ijw8qbd
SophosTroj/Swrort-BT
F-SecureTrojan.TR/Crypt.XPACK.Gen7
DrWebBackDoor.Meterpreter.92
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.dh
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Heur.rCW@Ijw8qbd (B)
SentinelOneDFI – Suspicious PE
F-ProtW32/Diple.F.gen!Eldorado
JiangminTrojan.Generic.ccimf
AviraTR/Crypt.XPACK.Gen7
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.AGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.Heur.E67E8A
ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
MicrosoftTrojan:Win32/Swrort!rfn
AhnLab-V3Trojan/Win32.RL_Dynamer.R329694
Acronissuspicious
McAfeeTrojan-FQRU!88B51A95C1F5
VBA32Trojan.Swrort
MalwarebytesBackdoor.Rozena
ESET-NOD32a variant of Win32/Rozena.AMZ
RisingBackdoor.Meterpreter!1.B96B (RDMK:cmRtazpDFtnQp9kHgr7fvpyTOoHi)
IkarusTrojan.Win32.Rozena
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.AC.416F47
WebrootW32.Malware.Gen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.8AA1.Malware.Gen

How to remove TrojanAPT.Cobalt.A7?

TrojanAPT.Cobalt.A7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment