Trojan

Trojan:Win32/Tovkater!rfn removal instruction

Malware Removal

The Trojan:Win32/Tovkater!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Tovkater!rfn virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

midnigntstranger.top
backverge.top

How to determine Trojan:Win32/Tovkater!rfn?


File Info:

crc32: 8730E2C0
md5: a6428b25b96af0fba4c8dfd51fd370ad
name: A6428B25B96AF0FBA4C8DFD51FD370AD.mlw
sha1: b251aaba8015c2471c3345cf20e0e490a6c1e2ab
sha256: 5b4f004ff9cceac80699302674aaeb7db3ee8b52af7a01cc00ab7e88cd78217a
sha512: e7cd7bb0d62bbefa723c5dffe81603ef568386b0b55890b0e24293501235062edbc87d9b90b9242c18ae64001d1811c4b461b9474e391bbdd5ebb614a425529f
ssdeep: 24576:ZaozQ8gAOSWlhyLjA7d0OJj2/97/9nLJiyqC+CAkCox97Y4crflhi79wVkuJ4:iNSeYY7SOJjuD8yq77kX/rI9k7KVkuC
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan:Win32/Tovkater!rfn also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0051918e1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2550
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46479843
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3411
SangforTrojan.Win32.Tovkater.IL
CrowdStrikewin/malicious_confidence_90% (D)
K7GWTrojan ( 0051918e1 )
Cybereasonmalicious.5b96af
CyrenW32/Tovkater.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646893-0
KasperskyTrojan-Downloader.Win32.Tovkater.cscl
BitDefenderTrojan.GenericKD.46479843
NANO-AntivirusTrojan.Win32.InstallMonster.exlcxj
MicroWorld-eScanTrojan.GenericKD.46479843
TencentWin32.Trojan-downloader.Tovkater.Llgs
Ad-AwareTrojan.GenericKD.46479843
SophosML/PE-A
ComodoMalware@#2ivebjioybcfz
BitDefenderThetaGen:NN.ZexaF.34170.toJfa4gYg7f
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PEI21
McAfee-GW-EditionBehavesLike.Win32.ICLoader.tc
FireEyeGeneric.mg.a6428b25b96af0fb
EmsisoftTrojan.GenericKD.46479843 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan/Generic.ASMalwS.252C9B6
MicrosoftTrojan:Win32/Tovkater!rfn
GDataNSIS.Trojan-Downloader.Tovkater.D
AhnLab-V3Downloader/Win32.Tovkater.R215698
Acronissuspicious
McAfeeArtemis!A6428B25B96A
MAXmalware (ai score=81)
VBA32Trojan.Wacatac
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PEI21
IkarusTrojan-Downloader.Win32.Tovkater
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/Tovkater!rfn?

Trojan:Win32/Tovkater!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment