Malware

Doina.24252 removal

Malware Removal

The Doina.24252 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.24252 virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Doina.24252?


File Info:

crc32: 6975EB9D
md5: cbbb8d6b3dd7f239005b61a9a441485a
name: CBBB8D6B3DD7F239005B61A9A441485A.mlw
sha1: d94d769f04d44bae4d4715fa5776e9285541fbae
sha256: bfa88505d679a31100f7e2d199aa0d0c9e4e67e4fabf535344033b10307541b0
sha512: 726f0515f85cb68023d016397a669b898dd1acd3b27350cb4e743bcf7186fc791d0e6780d7b5c5022fe54473996b2a87bbba532bbb5553e3dcfd048303603b38
ssdeep: 384:Tb7Gdei9OlduY0XCAObyakvyaZ2pgZYhc+mY+iACgVplKED3Zb7:Tmd19OlduY0X4jaWpIkf+iACgVplnLZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: All copyrights reserved with Suresh Sitaula (sureshsitaula@hotmail.com). Free to use and distribute "AS IS". No reverse engineering or modification is permitted.
InternalName: Neplish
FileVersion: 1.00
CompanyName: Freesoft Inc.
Comments: This software has been developed to facilitate Nepali typing. Words typed in 'Neplish' are converted to Nepali.
ProductName: Neplish
ProductVersion: 1.00
FileDescription: English(Neplish) to Nepali converter
OriginalFilename: Neplish.exe

Doina.24252 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.VBKrypt.lP2U
Elasticmalicious (high confidence)
McAfeeArtemis!CBBB8D6B3DD7
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/WrongInf.7c3fc6c8
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b3dd7f
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
BitDefenderGen:Variant.Doina.24252
MicroWorld-eScanGen:Variant.Doina.24252
Ad-AwareGen:Variant.Doina.24252
SophosML/PE-A
BitDefenderThetaAI:Packer.66FFB8E520
McAfee-GW-EditionBehavesLike.Win32.BadFile.pz
FireEyeGeneric.mg.cbbb8d6b3dd7f239
EmsisoftGen:Variant.Doina.24252 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Ren.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftPWS:Win32/Zbot!ml
GDataGen:Variant.Doina.24252
Acronissuspicious
MAXmalware (ai score=83)
TrendMicro-HouseCallTROJ_GEN.R002H09IJ21
IkarusTrojan.Patched
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Doina.24252?

Doina.24252 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment