Malware

XF.Coeus removal guide

Malware Removal

The XF.Coeus is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What XF.Coeus virus can do?

  • The office file has a unconventional code page: ANSI Cyrillic; Cyrillic (Windows)
  • The office file contains a macro
  • The office file contains a macro with auto execution
  • The office file contains anomalous features

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine XF.Coeus?


File Info:

crc32: 230E209A
md5: b72f296bef948e0e183e28a5a8bb1948
name: upload_file
sha1: fafb39ab61e7d678d9d87ccc5811db9e5c576f23
sha256: 5d15db2214c3304d5ecabb7790091e25acb1e55d69170ee1e154b1294d06049f
sha512: 36250127dbc08c94129e09c21aadea41c2f0043f7796645422a09b21bd51b71f7c25386b162cf7221cfc9b23fc5a63b5d3019dc7327568217e54992dd7cf695d
ssdeep: 12288:J2+J+l5QvSoOUkQNPRoswLLjfsHJNF05s:AJl5QrrkQFCHspN4
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1251, Name of Creating Application: Microsoft Excel, Create Time/Date: Sat Sep 16 01:00:00 2006, Last Saved Time/Date: Sun Oct 18 17:06:55 2020, Security: 0

Version Info:

0: [No Data]

XF.Coeus also known as:

MicroWorld-eScanXF.Coeus
FireEyeXF.Coeus
CAT-QuickHealTrojan.XLS.Downloader.39295
McAfeeW97M/Downloader.czq
CyrenXF/Agent.gen
SymantecW97M.Downloader
AvastOther:Malware-gen [Trj]
KasperskyHEUR:Trojan.Script.Generic
BitDefenderXF.Coeus
ViRobotXLS.Z.Agent.436224.BBP
AegisLabTrojan.Script.Generic.4!c
Ad-AwareXF.Coeus
DrWebExploit.Siggen2.51311
McAfee-GW-EditionW97M/Downloader.czq
EmsisoftXF.Coeus (B)
AviraXF/Agent.B5
MAXmalware (ai score=83)
MicrosoftTrojanDownloader:O97M/EncDoc.YAJ!MTB
ZoneAlarmHEUR:Trojan.Script.Generic
GDataMacro.Trojan-Downloader.Agent.AVJ
CynetMalicious (score: 85)
TACHYONTrojan/XF.Downloader.Gen
ZonerProbably Heur.W97ShellB
ESET-NOD32DOC/TrojanDownloader.Agent.CFR
IkarusTrojan-Downloader.Office.Crypt
FortinetXF/Agent.AYB!tr.dldr
AVGOther:Malware-gen [Trj]

How to remove XF.Coeus?

XF.Coeus removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment