Malware

About “Doina.72935” infection

Malware Removal

The Doina.72935 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.72935 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Doina.72935?


File Info:

name: 71446CF9CCB0794A6C69.mlw
path: /opt/CAPEv2/storage/binaries/19b38d1ba7377e9711a400caa4ae47c57257659accb597258b0040afdeb3d21f
crc32: 421128BD
md5: 71446cf9ccb0794a6c694831309e6045
sha1: 85e9182be35affc3754831e854fecb73d9324785
sha256: 19b38d1ba7377e9711a400caa4ae47c57257659accb597258b0040afdeb3d21f
sha512: c8775131a9e20c55d8e192ee88f1ded82bb99a2f701e0f42768d96ce31699ab8e193c24a97738cdb8691cf58746d51cc0e5f0803d071502b952078448ee96fe6
ssdeep: 24576:L8WvAqP7/zmbm2p0rH9usxQ3JD9eqCrfJp81RzS9vabt434KPEOsWtVOiF8kgZG:QFGvmDGr0N37eqE3ep8abW3jPEqtVR8C
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T153551213B6809032C12356328E24BB55917EF9A05F3146DB27D8FA7EDF302D1A936B67
sha3_384: f6c1ff2f08f3b3f8f552d49f7d617b6d3da2a5c132c51ed29a9a9dd39cefdf478a4abb063ab98c100b46ca2934e355db
ep_bytes: e820060000e98efeffffe995fdffff55
timestamp: 2020-07-15 14:55:19

Version Info:

0: [No Data]

Doina.72935 also known as:

BkavW32.AIDetectMalware
AVGWin32:Malware-gen
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Doina.72935
FireEyeGeneric.mg.71446cf9ccb0794a
SkyhighBehavesLike.Win32.Generic.tc
McAfeeGenericRXAA-AA!71446CF9CCB0
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDropper.Agent.Win32.459039
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.GIGN
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Avcrypt-6917413-0
KasperskyUDS:Backdoor.MSIL.Crysan.gen
BitDefenderGen:Variant.Doina.72935
NANO-AntivirusTrojan.Win32.TrjGen.ixhhsh
TencentMalware.Win32.Gencirc.10bbde78
EmsisoftGen:Variant.Doina.72935 (B)
F-SecureTrojan.TR/Kryptik.hpwsm
VIPREGen:Variant.Doina.72935
TrendMicroTROJ_GEN.R03BC0DDE24
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
JiangminAdWare.Generic.wpyx
AviraTR/Kryptik.hpwsm
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Generic
Kingsoftmalware.kb.a.958
MicrosoftTrojan:MSIL/AgentTesla.LQL!MTB
ArcabitTrojan.Doina.D11CE7
ZoneAlarmUDS:Backdoor.MSIL.Crysan.gen
GDataGen:Variant.Doina.72935
GoogleDetected
VBA32TrojanDropper.Agent
ALYacGen:Variant.Doina.72935
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0DDE24
RisingDownloader.Upatre!8.B5 (TFE:5:AovnMm7qEhL)
YandexTrojan.Agentb!7hhOo78RN98
MaxSecureTrojan.Malware.74478283.susgen
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/AgentTesla.LQL!MTB

How to remove Doina.72935?

Doina.72935 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment