Malware

How to remove “Doina.8837”?

Malware Removal

The Doina.8837 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.8837 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Doina.8837?


File Info:

crc32: 02D27980
md5: 261fcdc5b24d9ef414922a190a6644cf
name: 261FCDC5B24D9EF414922A190A6644CF.mlw
sha1: c35e6146a01843fa38a5e215ad7e4ec7e0d4ffe5
sha256: c1719cb8603106fe4af03104c6e96caab1677491e915c96537ac12a2776d7043
sha512: a53c87f13d2e714c82f9d9c381d64ad8fbd186d3bf52395856e564a72c6a3165f6568f11a2aa4867c31d549e1893048b3266bfb5a57dfb7cb73e9d323f84df06
ssdeep: 49152:izjSPJTod8RLxPfLOii3eq/BosxBnkRoktn+2IGU7e:8jSPmdYi3ejsxBkoi+lbS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c)
InternalName: AttackUpgrade
CompanyName: Docker
FileDescription: Je Feels Exacerbate Deka
LegalTrademarks: Copyright (c)
ProductName: AttackUpgrade
ProductVersion: 4.4.2.9
PrivateBuild: 4.4.2.9
Translation: 0x0409 0x04b0

Doina.8837 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056f4541 )
LionicTrojan.Win32.Shade.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.858
CynetMalicious (score: 100)
ALYacGen:Variant.Doina.8837
CylanceUnsafe
ZillyaAdware.Shade.Win32.8
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/Shade.38621d56
K7GWTrojan ( 0056f4541 )
Cybereasonmalicious.5b24d9
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CMWC
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Shade.owk
BitDefenderGen:Variant.Doina.8837
NANO-AntivirusTrojan.Win32.Shade.fipwbb
MicroWorld-eScanGen:Variant.Doina.8837
TencentWin32.Trojan.Shade.Hoot
Ad-AwareGen:Variant.Doina.8837
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34050.Tr0@aGCbzoii
TrendMicroPossible_HPGen-38
McAfee-GW-EditionBehavesLike.Win32.StartPage.tc
FireEyeGeneric.mg.261fcdc5b24d9ef4
EmsisoftGen:Variant.Doina.8837 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1120840
eGambitUnsafe.AI_Score_97%
Antiy-AVLTrojan/Generic.ASMalwS.284B566
MicrosoftTrojan:Win32/Occamy.B
GDataGen:Variant.Doina.8837
TACHYONRansom/W32.Shade.1789952
AhnLab-V3Malware/Win32.Possible_hpgen.C2740798
McAfeeArtemis!261FCDC5B24D
VBA32TrojanRansom.Shade
MalwarebytesRansom.Shade
PandaTrj/CI.A
YandexTrojan.Shade!TPh8zO+79Jo
IkarusTrojan-Ransom.GandCrab
FortinetW32/Troldesh.71B6!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Shade.HgIASOcA

How to remove Doina.8837?

Doina.8837 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment