Malware

Doris.5025 malicious file

Malware Removal

The Doris.5025 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Doris.5025 virus can do?

  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

propellero.com
googlestats.ru
alexastats.ru
profeller.com
google-ana1itics.com
searchmachiner.com
edgedl.me.gvt1.com

How to determine Doris.5025?


File Info:

crc32: D0AB8A70
md5: 10c306a3511c823ffeec95d83d330711
name: 10C306A3511C823FFEEC95D83D330711.mlw
sha1: c750fb506a8761df3794afdb8ae7e904d9c7ddb6
sha256: 4be67b79db06cfec129797fceb16c8bcc32c03f47de0391630b518522b24a5b4
sha512: 65b88accb93a52f453cfc1b5b5ffb0b6d62c8a126e2e74f72132bcd2398ec4aa9befef3f043a2d6e8871321c42b23f9b662c577d15d54cfdc456347c621aa400
ssdeep: 1536:9+e4nYIZH53AAGY+4fN+rDcF4jPQddIYode1L91:9+e4HAAGYDfYr4yjPQQQx
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Doris.5025 also known as:

K7AntiVirusTrojan ( 0006051b1 )
LionicTrojan.Win32.Agent.a!c
Elasticmalicious (high confidence)
DrWebTrojan.Suslik
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MauvaiseRI.S5265240
ALYacTrojan.VXGame
CylanceUnsafe
ZillyaBackdoor.Bandok.Win32.77
SangforTrojan.Win32.Heur.RP
AlibabaTrojanDownloader:Win32/Qhost.70d8668b
K7GWTrojan ( 0006051b1 )
Cybereasonmalicious.3511c8
CyrenW32/Backdoor.CXIN-8599
SymantecTrojan.Adclicker
ESET-NOD32a variant of Win32/Qhost.OAQ
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Downloader.Win32.Agent.aozb
BitDefenderGen:Variant.Doris.5025
NANO-AntivirusTrojan.Win32.Bandok.qxrf
ViRobotTrojan.Win32.A.Downloader.66048.DR[UPX]
MicroWorld-eScanGen:Variant.Doris.5025
TencentWin32.Trojan-Downloader.Agent.gjb
Ad-AwareGen:Variant.Doris.5025
SophosMal/Behav-104
ComodoBackdoor@#19ixuxlo3pzrm
BitDefenderThetaAI:Packer.09AB87D81E
VIPRETrojan.Vxgame.z
TrendMicroBKDR_BANDOK.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.kc
FireEyeGeneric.mg.10c306a3511c823f
EmsisoftGen:Variant.Doris.5025 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor/Bandok.ge
WebrootTrojanProxy:Win32/Dosenjo.A
AviraBDS/Backdoor.Gen
Antiy-AVLTrojan/Generic.ASMalwS.10389D8
MicrosoftPWS:Win32/Zbot!ml
GDataGen:Variant.Doris.5025
AhnLab-V3Trojan/Win32.Agent.C129348
McAfeegeneric!bg.ftt
MAXmalware (ai score=100)
VBA32TrojanDownloader.Agent
PandaBck/Bandok.AY
TrendMicro-HouseCallBKDR_BANDOK.SM
RisingTrojan.Win32.Undef.rnb (CLASSIC)
YandexTrojan.GenAsa!jFKJt3lOEnU
IkarusBackdoor.Win32.Bandok
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AP.171F650!tr
AVGFileRepMalware
Qihoo-360Win32/Backdoor.Bandook.HwsBOAMA

How to remove Doris.5025?

Doris.5025 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment