Risk

Should I remove “Win64/Riskware.CobaltStrike.Beacon.A”?

Malware Removal

The Win64/Riskware.CobaltStrike.Beacon.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/Riskware.CobaltStrike.Beacon.A virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Win64/Riskware.CobaltStrike.Beacon.A?


File Info:

crc32: 295F3BFD
md5: 853469a8302016f7a287b0d85d3b12ce
name: upload_file
sha1: e72ca7a1af7dd8aaf4bad5e145228984f99e723a
sha256: d44d718c247b1664861f987b1725314f152e43e7c1da80b163f812e1b7c3fdb7
sha512: d4c0b66f051da5d966efe7da9b08cda7ef6ad4d378bd7df166be9abbfdb6e813d514de343dea907357d74e8162f6ad6025536343f6598b5ba7e5f7d6a61f2615
ssdeep: 6144:sfh6dmW9QXaXeyDeBItQk6+6+xu4uZXAew3I9Eo9laE4v+6Dk50dinr9c:sfoddQXUZDee+Zunawp3I9EOlaE4v+6
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Win64/Riskware.CobaltStrike.Beacon.A also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.43927018
FireEyeGeneric.mg.853469a8302016f7
Qihoo-360Win32/Trojan.fea
ALYacTrojan.GenericKD.43927018
CylanceUnsafe
ZillyaTrojan.Cobalt.Win32.749
AegisLabTrojan.Win32.Cobalt.4!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.43927018
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1af7dd
TrendMicroTROJ_FRS.VSNTIU20
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin64:Malware-gen
KasperskyTrojan.Win32.Cobalt.ahq
AlibabaTrojan:Win32/Cobalt.f19577cb
NANO-AntivirusTrojan.Win64.Cobalt.hxxovn
Ad-AwareTrojan.GenericKD.43927018
SophosMal/Generic-S
ComodoMalware@#kh71am02xiua
DrWebTrojan.DownLoader34.60327
VIPRETrojan.Win32.Generic!BT
InvinceaMal/Generic-S
McAfee-GW-EditionRDN/Generic.dx
EmsisoftTrojan.GenericKD.43927018 (B)
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Cobalt
MicrosoftTrojan:Win32/Bluteal!rfn
ArcabitTrojan.Generic.D29E45EA
AhnLab-V3Malware/Win64.Generic.C2666782
ZoneAlarmTrojan.Win32.Cobalt.ahq
GDataTrojan.GenericKD.43927018
ESET-NOD32Win64/Riskware.CobaltStrike.Beacon.A
McAfeeRDN/Generic.dx
MalwarebytesTrojan.Agent
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_FRS.VSNTIU20
FortinetRiskware/Cobalt
AVGWin64:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
MaxSecureTrojan.Malware.107428791.susgen

How to remove Win64/Riskware.CobaltStrike.Beacon.A?

Win64/Riskware.CobaltStrike.Beacon.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment