Backdoor

Backdoor:Win64/Donipye.STX removal tips

Malware Removal

The Backdoor:Win64/Donipye.STX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win64/Donipye.STX virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Backdoor:Win64/Donipye.STX?


File Info:

crc32: 5BCE0666
md5: 79341568a1fc1199d6c7fc66ddc016de
name: 79341568A1FC1199D6C7FC66DDC016DE.mlw
sha1: 5a010d9e20409ef4e6e120fb6c1eebc6d1c4f4e0
sha256: 6a127acac9a7ad6a505e776cd9f0c0462517e86ad9d2d86e9f8bbb8e1f860e92
sha512: c1a9df274833bad6102aab47c1a91a245dbf107a54fd9dd14abfae63da497913f78fffbdf395157f40aa46074c6a7d31d9a1fe689319c2e03bcf7de9d720ebb5
ssdeep: 12288:Z6V/j5YFjRUR7xcWV1q8tp2iQUZy4KiHW2Z1P6JPp7STC6A4PkGgJt+CQn4ZbNv:GlY1RaxVdtVhuAEBH9C
type: PE32+ executable (DLL) (GUI) x86-64, for MS Windows

Version Info:

0: [No Data]

Backdoor:Win64/Donipye.STX also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.ServHelper-9835385-1
ALYacGen:Variant.Bulz.159724
ZillyaBackdoor.ServHelper.Win32.80
CrowdStrikewin/malicious_confidence_80% (W)
CyrenW64/Agent.CGF.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win64/Delf.K
APEXMalicious
AvastWin64:TrojanX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Backdoor.Win32.ServHelper.vho
BitDefenderGen:Variant.Bulz.159724
MicroWorld-eScanGen:Variant.Bulz.159724
Ad-AwareGen:Variant.Bulz.159724
FireEyeGeneric.mg.79341568a1fc1199
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1141476
Antiy-AVLTrojan/Generic.ASMalwS.3110AEB
MicrosoftBackdoor:Win64/Donipye.STX
GDataWin64.Trojan.BackdoorTrmnl.B
AhnLab-V3Malware/Win64.Generic.C4264902
McAfeeArtemis!79341568A1FC
MAXmalware (ai score=84)
MalwarebytesMalware.AI.3973245470
YandexTrojan.GenAsa!aK2VdBqQ8Pw
IkarusTrojan.Win64.Delf
FortinetW64/ServHelper.VHO!tr
AVGWin64:TrojanX-gen [Trj]

How to remove Backdoor:Win64/Donipye.STX?

Backdoor:Win64/Donipye.STX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment