Adware

How to remove “MSIL/Adware.Dotdo.FB”?

Malware Removal

The MSIL/Adware.Dotdo.FB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Adware.Dotdo.FB virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/Adware.Dotdo.FB?


File Info:

crc32: 61417CCD
md5: 36a5596ec5841c48306b2bda513ed6e3
name: 36A5596EC5841C48306B2BDA513ED6E3.mlw
sha1: c9b63fcccec4bd4c71cada31810c001f67c0857a
sha256: 4d32680e97f677501a42bd0bff52b54adb0ab3941c4c7486276ac3f43e2d0748
sha512: 505fcec3b78cf46cbe833a821a35dcf88a431dc8c808058e2837bd7bdcd9b9173e408d3d4a972760d10937fbb4e0b5ac7b2c6917fb10f73f086667e899ea3d68
ssdeep: 48:6VOYE1R3pncKhoYWuJY60vQ3iqaXhesGb4Sp+iaaQ8ABT6Vqbd:0saMoR5vQLsGbFaaQhp
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 8.4.7.74
InternalName: lack.exe
FileVersion: 8.4.7.74
ProductName: benham
ProductVersion: 8.4.7.74
FileDescription: benham
OriginalFilename: lack.exe

MSIL/Adware.Dotdo.FB also known as:

K7AntiVirusAdware ( 0052e2f91 )
LionicRiskware.Win32.DotDo.1!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.45782854
CylanceUnsafe
ZillyaAdware.Dotdo.Win32.27968
SangforPUP.Win32.Dotdo.FB
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:MSIL/Dotdo.d444e7d1
K7GWAdware ( 0052e2f91 )
Cybereasonmalicious.ec5841
CyrenW32/Dotdo.G.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Adware.Dotdo.FB
APEXMalicious
AvastWin32:Adware-gen [Adw]
BitDefenderTrojan.GenericKD.45782854
MicroWorld-eScanTrojan.GenericKD.45782854
TencentMsil.Adware.Dotdo.Lkxp
Ad-AwareTrojan.GenericKD.45782854
SophosGeneric PUA MJ (PUA)
ComodoApplication.MSIL.Razy.B@7xyy94
VIPREAdware.DotDo
McAfee-GW-EditionBehavesLike.Win32.AdwareTskLnk.zt
FireEyeGeneric.mg.36a5596ec5841c48
EmsisoftTrojan.GenericKD.45782854 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1122406
Antiy-AVLTrojan/Generic.ASMalwS.28B19FF
MicrosoftTrojan:Win32/Occamy.C4D
GDataTrojan.GenericKD.45782854
McAfeeAdware-TskLnk
MAXmalware (ai score=86)
MalwarebytesAdware.DotDo.Generic.TskLnk
PandaTrj/CI.A
IkarusAdWare.MSIL.Dotdo
FortinetAdware/Dotdo
AVGWin32:Adware-gen [Adw]

How to remove MSIL/Adware.Dotdo.FB?

MSIL/Adware.Dotdo.FB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment