Malware

AdWare.Win32.Dotdo removal

Malware Removal

The AdWare.Win32.Dotdo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.Dotdo virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine AdWare.Win32.Dotdo?


File Info:

crc32: 823FD16B
md5: 9d7101aa1f01abfc86c8208493f6bfd2
name: 9D7101AA1F01ABFC86C8208493F6BFD2.mlw
sha1: 2c20b263c2c06fc95439cc67605f008a982bbba2
sha256: 7f8ff0797545be99a0d40bbb567b99311113bd6ea801753e45250dd141ab9090
sha512: 8061f18f2fe94beccb111509352041b15407d4d8e71920ab326bb408a5d2fbf43ca0f0323d311bb9cb58d4ae9b2b9d3d754e9c746f7f6cf74e7e5b926d0d95c1
ssdeep: 768:6HJd0TpH2+bQ2dUWVX9Hfv1JMWmtLEJOyuBxG0D3mjfS3XJcMP/J506u:6pgpHzb9dZVX9fHMvG0D3XJcMP/J50n
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

AdWare.Win32.Dotdo also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 00563cd41 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop6.53547
CynetMalicious (score: 85)
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
CrowdStrikewin/malicious_confidence_90% (D)
K7GWAdware ( 00563cd41 )
SymantecRansom.Cerber
ESET-NOD32a variant of NSIS/Adware.Runner.M
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Ransomware.Cerber-655
Kasperskynot-a-virus:HEUR:AdWare.Win32.Dotdo.gen
NANO-AntivirusTrojan.Nsis.Adware.fexgye
TencentWin32.Trojan.Generic.Hwcn
SophosGeneric PUA CM (PUA)
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.F116IE
McAfee-GW-EditionBehavesLike.Win32.AdwareTskLnk.nh
AviraADWARE/Dotdo.fpwsn
MicrosoftRansom:Win32/Cerber!rfn
TACHYONTrojan/W32.Agent.36763.B
McAfeeArtemis!9D7101AA1F01
VBA32Adware.Dotdo
MalwarebytesRansom.Cerber
PandaTrj/CI.A
TrendMicro-HouseCallRansom_CERBER.F116IE
FortinetW32/Malicious_Behavior.VEX
AVGWin32:Trojan-gen
Qihoo-360Generic/Trojan.Ransom.6ca

How to remove AdWare.Win32.Dotdo?

AdWare.Win32.Dotdo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment