Malware

Doina.24715 removal guide

Malware Removal

The Doina.24715 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.24715 virus can do?

  • Dynamic (imported) function loading detected
  • Manipulates data from or to the Recycle Bin
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Likely virus infection of existing system binary
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Doina.24715?


File Info:

name: 576E0F445C0049445F2A.mlw
path: /opt/CAPEv2/storage/binaries/a07a864b18066f8941b78fe4bb5273e47535b8cfb0b997eca777743bf10b42fe
crc32: EFE49AF4
md5: 576e0f445c0049445f2a5d0ca1430def
sha1: 60638e22125d8b0d497330d7acd359151d055405
sha256: a07a864b18066f8941b78fe4bb5273e47535b8cfb0b997eca777743bf10b42fe
sha512: bc8e05ab30fff87cc4bf3dc7d35da09af3077ab2f080a3733310855c95b711ebf363a9ef0bbe2ef86c6cb98486a14a3fa8cb391325814b75f9c253d8b717204c
ssdeep: 384:eDAUAnRTMglj1a1o15R1Ep2i6rvZ1GEC3vVVdvV5tSXI7h0GftpBjS:eDApRTMnYR151vZQXvLH5IiY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T188145F51B9188032D0A38D3167A9FA9E6229B84CCA234CD671E8BEDF3BF2E55475113D
sha3_384: 62df75722f658b30701f4f2e4e174d81d93cd646210fbcbeca12e39777f6a958ba9ac8f40fc62ee28a90e9e347852605
ep_bytes: 558bec6aff685018400068b62e400064
timestamp: 2008-06-29 17:41:40

Version Info:

Comments:
CompanyName:
FileDescription: Microsoft
FileVersion: 1, 0, 0, 1
InternalName: XiaoHao
LegalCopyright: 版权所有 (C) 2008
LegalTrademarks:
OriginalFilename: XiaoHao.EXE
PrivateBuild:
ProductName: XiaoHao 应用程序
ProductVersion: 1, 0, 0, 1
SpecialBuild:
Translation: 0x0804 0x04b0

Doina.24715 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Siggen3.19586
MicroWorld-eScanGen:Variant.Doina.24715
FireEyeGeneric.mg.576e0f445c004944
ALYacGen:Variant.Doina.24715
MalwarebytesMalware.AI.1312217866
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Doina.24715
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderThetaAI:Packer.78AF28521F
SymantecTrojan.Maliframe!html
APEXMalicious
ClamAVWin.Trojan.Cosne-9884193-0
KasperskyVHO:Trojan.Win32.Convagent.gen
NANO-AntivirusTrojan.Win32.Cosne.bcvcf
ViRobotTrojan.Win32.A.Cosne.139268
Ad-AwareGen:Variant.Doina.24715
SophosML/PE-A
ZillyaTrojan.Cosne.Win32.125
EmsisoftGen:Variant.Doina.24715 (B)
IkarusGen.Win32.FileInfector
JiangminTrojan/Cosne.m
WebrootW32.Malware.Gen
AviraTR/Dropper.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.942C7A
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Doina.D608B
GDataGen:Variant.Doina.24715
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.AutoRun.R145645
McAfeeGenericRXAA-AA!576E0F445C00
VBA32Trojan.Tiggre
CylanceUnsafe
TencentMalware.Win32.Gencirc.114cda43
YandexTrojan.Agent!GEe9qLFxQnQ
SentinelOneStatic AI – Malicious PE
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Doina.24715?

Doina.24715 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment