Trojan

Trojan:Win32/Downloader.AT!MTB removal guide

Malware Removal

The Trojan:Win32/Downloader.AT!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Downloader.AT!MTB virus can do?

  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Trojan:Win32/Downloader.AT!MTB?


File Info:

crc32: AF2685C5
md5: fa3294dde7f08bbdff381c78131b048c
name: xcoremanagment_check.exe
sha1: f2a889308a4cb03e723bf69a61c5b43a02d7bf2f
sha256: 566c304cbe7e59c0cc5da3b05421588e0d1af576551552ffb4345e616531fb77
sha512: 3a8c160e1e68090f5ee70cc666fedc35177a520dcec8a020a3d02cbff14832a1c4fb6b81a0e35d95dfbd33c012a077bd902e130b712a5f781a456af5bc9beecf
ssdeep: 24576:1AHnh+eWsN3skA4RV1Hom2KXMmHalrWlwqM5:kh+ZkldoPK8YalrWu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan:Win32/Downloader.AT!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.32721076
FireEyeGeneric.mg.fa3294dde7f08bbd
CAT-QuickHealTrojan.Multi
McAfeeArtemis!FA3294DDE7F0
MalwarebytesTrojan.MalPack.AutoIt
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 0055b3701 )
BitDefenderTrojan.GenericKD.32721076
K7GWTrojan-Downloader ( 0055b3701 )
Cybereasonmalicious.08a4cb
TrendMicroTROJ_GEN.R049C0DKK19
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Miner-7394275-0
GDataTrojan.GenericKD.32721076
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojanDownloader:Win32/Autoit.20ea0ebf
ViRobotTrojan.Win32.Z.Miner.916480.A
RisingTrojan.CoinMiner/Autoit!1.BF0C (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.32721076 (B)
ComodoMalware@#3vf8ssn8xxx79
F-SecureTrojan.TR/Dldr.Autoit.errnc
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.ch
SophosMal/Generic-S
CyrenW32/Trojan.VMDF-9254
AviraTR/Dldr.Autoit.errnc
MicrosoftTrojan:Win32/Downloader.AT!MTB
ArcabitTrojan.Generic.D1F348B4
ZoneAlarmUDS:DangerousObject.Multi.Generic
Acronissuspicious
ALYacTrojan.GenericKD.32721076
MAXmalware (ai score=99)
Ad-AwareTrojan.GenericKD.32721076
CylanceUnsafe
PandaTrj/CI.A
ESET-NOD32a variant of Win32/TrojanDownloader.Autoit.OVB
TrendMicro-HouseCallTROJ_GEN.R049C0DKK19
IkarusTrojan-Downloader.Win32.AutoIt
eGambitUnsafe.AI_Score_95%
FortinetAutoIt/Agent.OUJ!tr.dldr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.b97

How to remove Trojan:Win32/Downloader.AT!MTB?

Trojan:Win32/Downloader.AT!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment