Malware

VirTool:Win64/Atosev.D information

Malware Removal

The VirTool:Win64/Atosev.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win64/Atosev.D virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VirTool:Win64/Atosev.D?


File Info:

crc32: BA1E26C6
md5: c3c379b9431f88eaab6ad7f3f0feda51
name: upload_file
sha1: 1d32579c148801cbe8e10167fbab50d6846e84c8
sha256: 04629a6002988fe3739d8af64e685da73f2ddb927d5a31e59c007f596a2cf746
sha512: 70213ceee7856db69c2036507a1926172355150d01ea52e141e068dea88e53312f2e6697bd38bc1cf8df07120f0aea7dcf9919f7865f444208cafbea2e758213
ssdeep: 3072:8jh9N4a1j7i2h9Td2+1lxvTeZna8xUhUbT15/:8jdF5doSxvixTxUA
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

VirTool:Win64/Atosev.D also known as:

BkavW32.BaronNightPE.Trojan
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.CBL.Carbanak.3.9ADED26D
FireEyeGeneric.mg.c3c379b9431f88ea
CAT-QuickHealPUA.AtosevRI.S7424221
ALYacGeneric.CBL.Carbanak.3.9ADED26D
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusUnwanted-Program ( 0054839e1 )
BitDefenderGeneric.CBL.Carbanak.3.9ADED26D
K7GWUnwanted-Program ( 0054839e1 )
CrowdStrikewin/malicious_confidence_100% (D)
TrendMicroTROJ_GEN.R007C0DFC20
BitDefenderThetaGen:NN.ZedlaF.34254.mu4@ayp0e8gi
CyrenW32/S-d757aa55!Eldorado
SymantecMeterpreter
TrendMicro-HouseCallTROJ_GEN.R007C0DFC20
Paloaltogeneric.ml
ClamAVWin.Trojan.CobaltStrike-8091534-0
KasperskyHEUR:Trojan.Win32.Cometer.gen
AlibabaVirTool:Win32/Atosev.047d9ecc
NANO-AntivirusTrojan.Win32.Cometer.eqcglk
APEXMalicious
TencentMalware.Win32.Gencirc.10b3bdfd
Ad-AwareGeneric.CBL.Carbanak.3.9ADED26D
SophosMal/Behav-010
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebBackDoor.Meterpreter.19
ZillyaTrojan.Cometer.Win32.1309
InvinceaMal/Generic-R + Mal/Behav-010
McAfee-GW-EditionBehavesLike.Win32.CobaltStr.dh
EmsisoftGeneric.CBL.Carbanak.3.9ADED26D (B)
IkarusHackTool.CobaltStrike
WebrootW32.Trojan.Agent.Gen
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Cometer
MicrosoftVirTool:Win64/Atosev.D
ArcabitGeneric.CBL.Carbanak.3.9ADED26D
ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
GDataGeneric.CBL.Carbanak.3.9ADED26D
CynetMalicious (score: 100)
AhnLab-V3Unwanted/Win32.Cobalt.R211396
Acronissuspicious
McAfeeCobaltStr-FDWE!C3C379B9431F
MalwarebytesHackTool.CobaltStrike
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/RiskWare.CobaltStrike.Beacon.A
RisingHackTool.Swrort!1.6477 (CLASSIC)
YandexTrojan.Cometer!
SentinelOneDFI – Malicious PE
FortinetW32/Cometer.A!tr
AVGWin32:HacktoolX-gen [Trj]
AvastWin32:HacktoolX-gen [Trj]
Qihoo-360Win32/Trojan.44b

How to remove VirTool:Win64/Atosev.D?

VirTool:Win64/Atosev.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment