Malware

Doina.9716 removal instruction

Malware Removal

The Doina.9716 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doina.9716 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Operates on local firewall’s policies and settings
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Doina.9716?


File Info:

name: 7BD5BC4979AB05F4EA69.mlw
path: /opt/CAPEv2/storage/binaries/f12822d8013d4678e6547bc43b3372342ba37394ff846935ef5e67e3a95919c2
crc32: 6B0BE11A
md5: 7bd5bc4979ab05f4ea69297080cddab4
sha1: e762e5d51288c4498d4bf92f0ea26d195e1ea981
sha256: f12822d8013d4678e6547bc43b3372342ba37394ff846935ef5e67e3a95919c2
sha512: c7a49d0c4f7d6be6667795f196de38a414f1d53342a188877bfd8bf738dfdb17706aa00dab7c4ee57be6e65ebc2030533e7376986873332be115f6aa0c82f6b6
ssdeep: 384:bEtOfGiLwIyYBMihAiiP+LJfCP4BK5thTRcs6ide+GvN+:AtOfG6/yYBMihAHPU5CP5jRcMdel1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T146A2C00ABB5C6658E0CB077694A74AD9CBAD55291AB8830F253414B70EF3B444E023F7
sha3_384: c5b108d924295071c4916ff68c1236e4f1c2a8b943963fcc5d80c86efb2e8776937b0e58d286326d575f805583732ae6
ep_bytes: 60be00b040008dbe0060ffff5783cdff
timestamp: 2012-05-09 10:20:45

Version Info:

Comments:
CompanyName: SYDH Technologies Inc
FileDescription: Asyhbd Sydlff Inf
FileVersion: 5.0.0
ProductVersion: 5.1.0
InternalName:
LegalCopyright: Copyright 2009-2011 SYDH Technologies Inc
LegalTrademarks: SYDH
OriginalFilename: AsyhbdSydlff.exe
PrivateBuild:
ProductName: SYDH
SpecialBuild:
Translation: 0x0409 0x04e4

Doina.9716 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lE7w
Elasticmalicious (moderate confidence)
CynetMalicious (score: 99)
FireEyeGen:Variant.Doina.9716
CAT-QuickHealTrojanDownloader.Kagany.E3
SkyhighGeneric.ddc
ALYacGen:Variant.Doina.9716
Cylanceunsafe
ZillyaDownloader.Agent.Win32.136343
SangforDownloader.Win32.Agent.V5bq
K7AntiVirusHacktool ( 005288ca1 )
AlibabaTrojanDownloader:Win32/Karagany.f95675e9
K7GWHacktool ( 005288ca1 )
ArcabitTrojan.Doina.D25F4
VirITTrojan.Win32.Generic.CFEJ
SymantecTrojan Horse
ESET-NOD32Win32/TrojanDownloader.Agent.QBO
APEXMalicious
AvastWin32:Dh-A [Heur]
ClamAVWin.Trojan.Karagany-1253
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Doina.9716
NANO-AntivirusTrojan.Win32.Injecter.btums
ViRobotTrojan.Win32.Agent.23040.DN
MicroWorld-eScanGen:Variant.Doina.9716
TencentWin32.Trojan-Downloader.Oader.Jcnw
EmsisoftGen:Variant.Doina.9716 (B)
F-SecureTrojan.TR/Gendal.5858282
DrWebTrojan.DownLoader1.13618
VIPREGen:Variant.Doina.9716
TrendMicroTROJ_DLOADER.SM2
Trapminemalicious.high.ml.score
SophosMal/Generic-S
Paloaltogeneric.ml
JiangminTrojanDownloader.Injecter.clw
WebrootW32.Malware.gen
VaristW32/A-fe747f60!Eldorado
AviraTR/Gendal.5858282
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Lac
KingsoftWin32.Trojan.Generic.a
XcitiumTrojWare.Win32.TrojanDownloader.Elteder.A@4s4n55
MicrosoftTrojan:Win32/Vindor!pz
SUPERAntiSpywareTrojan.Agent/Gen-Faldesc[Cont]
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Doina.9716
GoogleDetected
AhnLab-V3Trojan/Win32.CSon.R8230
McAfeeGeneric.ddc
VBA32Trojan.Serious.5505
MalwarebytesMalware.AI.243750749
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_DLOADER.SM2
RisingTrojan.Win32.Fednu.fjy (CLOUD)
YandexTrojan.GenAsa!2Z6HFMbTn2Y
IkarusTrojan-Downloader.Win32.Karagany
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Agent.QFS!tr.dldr
BitDefenderThetaGen:NN.ZexaF.36804.bmKfamsDR1li
AVGWin32:Dh-A [Heur]
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/Doina

How to remove Doina.9716?

Doina.9716 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment