Trojan

TrojanDownloader:Win32/Streamto!atmn (file analysis)

Malware Removal

The TrojanDownloader:Win32/Streamto!atmn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Streamto!atmn virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • A scripting utility was executed

How to determine TrojanDownloader:Win32/Streamto!atmn?


File Info:

name: B9A10AB7821735AC5228.mlw
path: /opt/CAPEv2/storage/binaries/9b2a29cc00d2dc6bb2499835c9ef070a7bb563f709bcb50617f00b75254f7074
crc32: 0177E760
md5: b9a10ab7821735ac5228fc8cd600c299
sha1: acc295e67aa2e06e7a36032881f392ca56f34dea
sha256: 9b2a29cc00d2dc6bb2499835c9ef070a7bb563f709bcb50617f00b75254f7074
sha512: 373990dda228af9869d5ca8bd57a429142a2ced9848473ef2698e8fcb490ce6cbae18eba09cd5af41f7002fb614c36f51118831c97dff2b6ab18eb24a5f76210
ssdeep: 768:uJChTypVTFylNCQKowZS4E6SynTruH712N3b4wFBOV1mJt6oRZPJW2q5Q/2wRT:uAhTyTTFQNC13U4rtnDb4tmJ8AJq4N
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11E33BFE6BAC098B7E81701714977AEBAE3FACE101B5112472B587F7E3937043861A643
sha3_384: 0d770c499c41ab75c4499746855429482be3586acb062ce12de8a47729f2cde0b7c9bd3b1cf33df2df1521d9c3f5b58b
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2008-05-03 14:08:38

Version Info:

0: [No Data]

TrojanDownloader:Win32/Streamto!atmn also known as:

BkavW32.Common.8BA055CB
LionicTrojan.Win32.Agent.Y!c
AVGVBS:Agent-BJU [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.12907884
FireEyeGeneric.mg.b9a10ab7821735ac
CAT-QuickHealVBS/Downloader.ABZ
SkyhighBehavesLike.Win32.Dropper.qm
McAfeeArtemis!B9A10AB78217
Cylanceunsafe
SangforDownloader.Vbs.Streamto.Vp94
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:VBS/Streamto.422ea02a
K7GWTrojan-Downloader ( 001f44451 )
K7AntiVirusTrojan-Downloader ( 001f44451 )
VirITTrojan.VBS.Agent.ABZ
SymantecTrojan.Gen
ESET-NOD32VBS/TrojanDownloader.Agent.YYH
CynetMalicious (score: 99)
APEXMalicious
KasperskyTrojan-Downloader.VBS.Agent.abz
BitDefenderTrojan.Generic.12907884
NANO-AntivirusTrojan.Script.Agent.bfxfib
AvastVBS:Agent-BJU [Trj]
TencentVbs.Trojan-Downloader.Agent.Qnkl
EmsisoftTrojan.Generic.12907884 (B)
BaiduVBS.Trojan-Downloader.Psyme.h
F-SecureTrojan.TR/Dldr.VBS.B
DrWebTrojan.DownLoader3.3758
VIPRETrojan.Generic.12907884
TrendMicroTROJ_GEN.R002C0DAO24
Trapminesuspicious.low.ml.score
SophosTroj/VBS-AH
IkarusTrojan-Downloader.VBS.Agent
JiangminTrojanDownloader.VBS.di
VaristVBS/Agent.FJ
AviraTR/Dropper.Gen2
KingsoftWin32.Troj.Unknown.a
MicrosoftTrojanDownloader:Win32/Streamto!atmn
XcitiumMalware@#9xgij9rl9h0q
ArcabitTrojan.Generic.DC4F56C
ZoneAlarmUDS:Trojan-Downloader.VBS.Agent.abz
GDataTrojan.Generic.12907884
GoogleDetected
AhnLab-V3Dropper/Win32.Mudrop.R3961
ALYacTrojan.Generic.12907884
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DAO24
RisingTrojan.DL.Script.VBS.Agent.nj (CLASSIC)
YandexTrojan.Delf!BwHeNKDRj9M
FortinetWM/Moat.CB660A09!tr
Cybereasonmalicious.782173
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/Agent.YYH

How to remove TrojanDownloader:Win32/Streamto!atmn?

TrojanDownloader:Win32/Streamto!atmn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment