Malware

How to remove “Win64/CobaltStrike.Artifact.L”?

Malware Removal

The Win64/CobaltStrike.Artifact.L is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/CobaltStrike.Artifact.L virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Win64/CobaltStrike.Artifact.L?


File Info:

crc32: 38E472EA
md5: 9f7e5f327910a59864c0a3d7a532171b
name: 9F7E5F327910A59864C0A3D7A532171B.mlw
sha1: 32985eced630ef931fb17186cce0cf780fe1d5ee
sha256: 6f709822afb61ca9e38dd5a2fd0d00b9d68245815b81e44684c952f2fb1b1ab7
sha512: 84a9c5c93246c9ac7f11646d793801199ed3e1bf579b4c012d3aa482473649f015cd16fd68fa89ec7883e22d4991994bae83059e0e834fbfb268e4fbc8ef7f58
ssdeep: 6144:jBqPj3F/2GMhid8d8PdfUFsnpUPD8s65EuvgHuE5qXMwUSqUfcvwLy:jkPj3Eid8a5Euvgo8tUfcv
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Win64/CobaltStrike.Artifact.L also known as:

Elasticmalicious (high confidence)
ClamAVWin.Countermeasure.LoaderWinGeneric-9804845-2
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
ESET-NOD32a variant of Win64/CobaltStrike.Artifact.L.gen
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Convagent.gen
SophosML/PE-A
McAfee-GW-EditionBehavesLike.Win64.Generic.dc
FireEyeGeneric.mg.9f7e5f327910a598
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
Acronissuspicious
IkarusTrojan.Win64.Cobaltstrike
MaxSecureTrojan.Malware.300983.susgen
FortinetW64/Kryptik.CCO!tr

How to remove Win64/CobaltStrike.Artifact.L?

Win64/CobaltStrike.Artifact.L removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment