Malware

Should I remove “Doina.13367”?

Malware Removal

The Doina.13367 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.13367 virus can do?

  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Doina.13367?


File Info:

crc32: 8B74D5C7
md5: d80cca0d65a11dd938b631e1a24e8b45
name: D80CCA0D65A11DD938B631E1A24E8B45.mlw
sha1: ac1f6fb22ed915de7513bc2d4f77eb78fbfa8512
sha256: 143df200b8a814ae5fd603928af15439394bd83fd43f945eb4214dff80b186d0
sha512: b74bc39b998e504e3d27da6db332fa53ec1a56ce227f36895a07a74d39fa51caf2d1bdf529a39dbfecf3bf3664084484eb6ae45f9dc0202f2c956ef3f51363e0
ssdeep: 6144:9piLY0NM8t2u3+ZJ3N2qahOfiDECCCCpCCNtjFMS0MmOYrsTr2:9pi00NM8tP+ZJ3N2qanOiAK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2008-2012
InternalName: Uninstall
FileVersion: 1, 0, 0, 0
CompanyName: x5317x4eacx6148x6069x5929x4e0bx7f51x7edcx6280x672fx6709x9650x516cx53f8
ProductName: Uninstall Application
ProductVersion: 1, 0, 0, 0
FileDescription: x6148x6069x5929x4e0bx5378x8f7dx7a0bx5e8f
OriginalFilename: Uninst.exe
Translation: 0x0804 0x04b0

Doina.13367 also known as:

K7AntiVirusRiskware ( 0040eff71 )
CynetMalicious (score: 99)
ALYacGen:Variant.Doina.13367
CylanceUnsafe
ZillyaTrojan.Gen.Win32.1809
SangforSuspicious.Win32.Save.a
AlibabaRansom:Win32/DelFile.856756d4
K7GWRiskware ( 0040eff71 )
ESET-NOD32a variant of Generik.FKHIFMX
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Gen.az
BitDefenderGen:Variant.Doina.13367
NANO-AntivirusTrojan.Win32.GenericKD.eshrty
MicroWorld-eScanGen:Variant.Doina.13367
TencentMalware.Win32.Gencirc.114cde74
Ad-AwareGen:Variant.Doina.13367
ComodoMalware@#3gprbzujo7ygs
BitDefenderThetaGen:NN.ZexaF.34126.qq0@aKy3SSoj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericR-LUO!D80CCA0D65A1
FireEyeGen:Variant.Doina.13367
EmsisoftGen:Variant.Doina.13367 (B)
JiangminTrojan.Gen.ms
AviraTR/DelFile.jrevf
Antiy-AVLTrojan/Generic.ASMalwS.2410996
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom
ArcabitTrojan.Doina.D3437
GDataGen:Variant.Doina.13367
AhnLab-V3Trojan/Win32.Gen
McAfeeGenericR-LUO!D80CCA0D65A1
MAXmalware (ai score=97)
VBA32Trojan-Ransom.Gen
PandaTrj/GdSda.A
YandexTrojan.GenAsa!BfDPjIvbmYo
IkarusTrojan.SuspectCRC
FortinetW32/Generik.FKHIFMX!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Doina.13367?

Doina.13367 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment