Malware

What is “Doina.64684”?

Malware Removal

The Doina.64684 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.64684 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Doina.64684?


File Info:

name: 0528A33FDD04C3CFB4B1.mlw
path: /opt/CAPEv2/storage/binaries/c5b4a905385b6aaaba4694c65143d19feb68087706433c0ae11ea0cc3399cca1
crc32: 9FD1814C
md5: 0528a33fdd04c3cfb4b1911d19be7af7
sha1: 62cc8c404d46aab42703fe6c877d4ace14bf6a66
sha256: c5b4a905385b6aaaba4694c65143d19feb68087706433c0ae11ea0cc3399cca1
sha512: 3a67de43a76f239bfaac9e8540a777be4c72835627e2ddbe41251634a99ed5c16f1c8140c309101cdb5ecc17da80ee3ef2562a911ad73ba27fb65283e43fa8a8
ssdeep: 6144:bQDch0cEeVZG5wQpKG+v4L2iThbg4kCGIpkX:MQ0cELiQALvIBbgep
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CC444B62F3D14C33F1633B3C9D5B9668982AFE103A299D5A67E91D4C4E7878178343A3
sha3_384: 159ceaef8c3a0f918afa534b81581287e10868a8030e8e82400750d55bb3f5d1e083303796f80efa04b065fc8a063e0d
ep_bytes: 558bec83c4f453e81000fdffe8c714fd
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Doina.64684 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Doina.64684
FireEyeGen:Variant.Doina.64684
SkyhighArtemis
McAfeeArtemis!0528A33FDD04
Cylanceunsafe
SangforTrojan.Win32.Agent.V0h9
BitDefenderGen:Variant.Doina.64684
EmsisoftGen:Variant.Doina.64684 (B)
VIPREGen:Variant.Doina.64684
VaristW32/ABRisk.BZKQ-3026
Antiy-AVLTrojan/Win32.Agent
Kingsoftmalware.kb.a.791
ArcabitTrojan.Doina.DFCAC
GDataGen:Variant.Doina.64684
GoogleDetected
ALYacGen:Variant.Doina.64684
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002H09JB23
MaxSecureTrojan.Malware.219372809.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS

How to remove Doina.64684?

Doina.64684 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment