Malware

How to remove “Win32:CobaltStrike-A [Trj]”?

Malware Removal

The Win32:CobaltStrike-A [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:CobaltStrike-A [Trj] virus can do?

    How to determine Win32:CobaltStrike-A [Trj]?

    
    

    File Info:

    crc32: F7F420C0
    md5: d16306efc81c1d2e6788eed426c85a3d
    name: upload_file
    sha1: 95db01cad6c1bc47700d65fee9c807044b538017
    sha256: 75663d10db0cfa067e343753ed072d9476c082ad749e9cbbdc475da930412a42
    sha512: 10e6b74a6e5cbaed3bbff76577acb1080188205072e58f78151b5e9e6a248896fbf07454ee432b521f3b84ee9f62f2ca83fe79945208f6e184e9ee9786f6b02e
    ssdeep: 3072:KlC60GeD6N9Za5Yp6zPC952DmKX0tDV2/jqBkLcP6j5U75D:KNxfaWUzPWEKKX0pURLcyji
    type: MS-DOS executable, MZ for MS-DOS

    Version Info:

    0: [No Data]

    Win32:CobaltStrike-A [Trj] also known as:

    BkavW32.AIDetectVM.malware1
    Elasticmalicious (high confidence)
    MicroWorld-eScanGeneric.CBL.Carbanak.3.5F09BBC8
    FireEyeGeneric.mg.d16306efc81c1d2e
    CAT-QuickHealTrojan.Atosev
    CylanceUnsafe
    VIPRETrojan.Win32.Generic!BT
    SangforMalware
    K7AntiVirusRiskware ( 0050f89b1 )
    BitDefenderGeneric.CBL.Carbanak.3.5F09BBC8
    K7GWRiskware ( 0050f89b1 )
    CrowdStrikewin/malicious_confidence_100% (D)
    TrendMicroTROJ_GEN.R002C0DHQ20
    BitDefenderThetaGen:NN.ZedlaF.34254.mq4@aWOiqYo
    CyrenW32/S-2d1b851e!Eldorado
    SymantecML.Attribute.HighConfidence
    TrendMicro-HouseCallTROJ_GEN.R002C0DHQ20
    AvastWin32:CobaltStrike-A [Trj]
    CynetMalicious (score: 100)
    KasperskyHEUR:Trojan.Win32.Cometer.gen
    AlibabaBackdoor:Win32/CobaltStrike.191228
    NANO-AntivirusTrojan.Win32.Inject.fmmnqp
    APEXMalicious
    TencentMalware.Win32.Gencirc.10b3d535
    Ad-AwareGeneric.CBL.Carbanak.3.5F09BBC8
    F-SecureTrojan.TR/Proxy.Gen
    DrWebBackDoor.Meterpreter.85
    ZillyaTrojan.Cometer.Win32.949
    InvinceaTroj/Swrort-CH
    SophosTroj/Swrort-CH
    SentinelOneDFI – Malicious PE
    WebrootW32.Malware.Gen
    AviraTR/Proxy.Gen
    MAXmalware (ai score=84)
    Antiy-AVLHackTool/Win32.Inject
    MicrosoftVirTool:Win32/Atosev.A
    ArcabitGeneric.CBL.Carbanak.3.5F09BBC8
    ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
    GDataGeneric.CBL.Carbanak.3.5F09BBC8
    AhnLab-V3Unwanted/Win32.Agent.R255217
    Acronissuspicious
    VBA32Trojan.Cometer
    ALYacGeneric.CBL.Carbanak.3.5F09BBC8
    MalwarebytesRiskWare.GameHack.CSGO
    PandaTrj/Genetic.gen
    ESET-NOD32a variant of Win32/RiskWare.CobaltStrike.Beacon.A
    RisingHackTool.Swrort!1.6477 (CLASSIC)
    YandexTrojan.Atosev!
    IkarusHackTool.CobaltStrike
    FortinetRiskware/Cometer
    AVGWin32:CobaltStrike-A [Trj]
    Paloaltogeneric.ml
    Qihoo-360Win32/Trojan.44b

    How to remove Win32:CobaltStrike-A [Trj]?

    Win32:CobaltStrike-A [Trj] removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment