Malware

Doina.8097 removal tips

Malware Removal

The Doina.8097 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.8097 virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Russian
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Doina.8097?


File Info:

crc32: BCCD874C
md5: 65fa325ec36cf9a85ceaaf9924dfa63e
name: 65FA325EC36CF9A85CEAAF9924DFA63E.mlw
sha1: 2e517d40af9993d1856873333656d9e65f914993
sha256: 0be23c8678c7d1764c79e821bd13422c40f8a0dc91c36e3c949f6ffb02259716
sha512: 0360e5c38a490aa556087408d4aba620b289c5930677408ac13e06b9bf00b087b1abe05d71832e996250856d8d112ab5894b666a529d45f011003a09551c8917
ssdeep: 6144:mTb99Z6I9oMQMUbYZgoa5ujI3oNgYPxNmL6EnvAMG2Io6oZXwULoQHvBDKlf/JD:mb99Z69FGpPlEvAMfRLPJDKlfBFiEv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Doina.8097 also known as:

K7AntiVirusTrojan ( 7000000f1 )
Elasticmalicious (high confidence)
DrWebTrojan.KillProc.25076
MicroWorld-eScanGen:Variant.Doina.8097
CAT-QuickHealRansom.Weenloc.A8
ALYacGen:Variant.Doina.8097
ZillyaTrojan.Gimemo.Win32.6137
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/LockScreen.492e7dec
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.ec36cf
CyrenW32/LockScreen.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.AGY
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyTrojan-Ransom.Win32.Gimemo.bcpk
BitDefenderGen:Variant.Doina.8097
NANO-AntivirusTrojan.Win32.Gimemo.cqkscn
TencentMalware.Win32.Gencirc.10c5a1aa
Ad-AwareGen:Variant.Doina.8097
SophosMal/Generic-S
ComodoMalware@#o8vwx86v0uxg
BitDefenderThetaAI:Packer.EBEA690118
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_LockScreen.R002C0DB421
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.65fa325ec36cf9a8
EmsisoftGen:Variant.Doina.8097 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Gimemo.ggl
WebrootW32.Gen.Bt
AviraDR/Delphi.Gen
ArcabitTrojan.Doina.D1FA1
AegisLabTrojan.Win32.Gimemo.j!c
GDataGen:Variant.Doina.8097
AhnLab-V3Trojan/Win32.Gimemo.R103197
McAfeeGenericR-AEF!65FA325EC36C
MAXmalware (ai score=81)
VBA32Trojan-Ransom.Winlock.gen
PandaTrj/CI.A
TrendMicro-HouseCallRansom_LockScreen.R002C0DB421
RisingRansom.Gimemo!8.306 (CLOUD)
YandexTrojan.GenAsa!ok3cBqiD2Bg
IkarusTrojan-Ransom.Stim
FortinetW32/LockScreen.ASO!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoBlocker.HwUBE5MA

How to remove Doina.8097?

Doina.8097 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment