Malware

Doina.3143 (B) removal guide

Malware Removal

The Doina.3143 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.3143 (B) virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to disable UAC
  • Uses suspicious command line tools or Windows utilities

How to determine Doina.3143 (B)?


File Info:

crc32: 40FFD58E
md5: 5b4c6628fa4c810fabeb9303f2850ee7
name: 5B4C6628FA4C810FABEB9303F2850EE7.mlw
sha1: a2ddb46ee03d2786b90cfffd2cca9e77d246f59c
sha256: 5cf2e2771f8e44b1a5f9ede97fa92eb1d2227bc5ce03ea8f26fd1ed13f48ea8c
sha512: eaa6121dbe94e393452038341dafd5dce0253812dce92488bc4e9682390dc46fe6dad03a8f01844b07097c4896de28e521aafac65f22828b5163281489cb3ca8
ssdeep: 384:4r9sOcIp6wRcsSYLvKWLWbstQTid6HJyraXkqdkJ7PNWoeEzcAaNJawcudoD7Ug:kmOhplcsHvKWzX6HJmFqda7koepnbcu
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Doina.3143 (B) also known as:

BkavW32.AIDetect.malware2
ALYacGen:Variant.Doina.3143
MalwarebytesMalware.Heuristic.1003
BitDefenderGen:Variant.Doina.3143
APEXMalicious
KasperskyUDS:Trojan-Ransom.Win32.Blocker
MicroWorld-eScanGen:Variant.Doina.3143
Ad-AwareGen:Variant.Doina.3143
SophosML/PE-A
FireEyeGen:Variant.Doina.3143
EmsisoftGen:Variant.Doina.3143 (B)
Webroot
ArcabitTrojan.Doina.DC47
GDataGen:Variant.Doina.3143
MAXmalware (ai score=86)
RisingMalware.Heuristic!ET#81% (RDMK:cmRtazoDrtxbd5lW1IxfksUACSs4)
Qihoo-360HEUR/QVM18.1.657A.Malware.Gen

How to remove Doina.3143 (B)?

Doina.3143 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment