We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Chekafe.A
Detected by Microsoft Defender Antivirus
Aliases: Trojan-Downloader.Win32.Agent.cxzk (Kaspersky) Trojan.DL.Chekafe.Gen (VirusBuster) Trojan.DownLoad1.21027 (Dr.Web) Win32/TrojanDownloader.Chekafe.A (ESET)
Summary
TrojanDownloader:Win32/Chekafe.A is a trojan that downloads and executes arbitrary files from a remote host. It also checks if the affected system is in an Internet Café; if so, it sends this information and the system's MAC address, to a remote host.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as Microsoft Security Essentials, or the Microsoft Safety Scanner. For more information about using antivirus software, see http://www.microsoft.com/security/antivirus/av.aspx.