Trojan

Trojan.DorkBot.ED removal instruction

Malware Removal

The Trojan.DorkBot.ED is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.DorkBot.ED virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.DorkBot.ED?


File Info:

crc32: E116AF37
md5: cd74fbb8a652e9c0f60a662aafd8ee73
name: CD74FBB8A652E9C0F60A662AAFD8EE73.mlw
sha1: 2106c77759cbfbfb1144fb5dbfff1825efa4906d
sha256: f91855bd35e4b4687e07110980ffeb9254ebd2bedf8f51fea186b4628b918ac8
sha512: 1350dc3d61b5cb6ce560830d6f889f4a1c6157bc9788d5ca7f9c13505e13eee8d1ace35e22fe777c1aeb2f42ea844aa5c08f5727886d41994a3d218092c25de2
ssdeep: 3072:WfmzxB1pl36iRPBVzehSHXB0rwhvCe9YQgtmTcmIk+3Ffm:WOzxB1vnRPBBx0rwhqe96qce4FO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Fidelit
FileVersion: 7.05.0007
CompanyName: Conduit
ProductName: DirSofts
ProductVersion: 7.05.0007
OriginalFilename: Fidelit.exe

Trojan.DorkBot.ED also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.PonyStealer.km0@cCac3Aji
FireEyeGeneric.mg.cd74fbb8a652e9c0
McAfeeInjector-FTZ!CD74FBB8A652
CylanceUnsafe
ZillyaTrojan.Fareit.Win32.18386
SangforMalware
K7AntiVirusTrojan ( 005041e71 )
BitDefenderGen:Heur.PonyStealer.km0@cCac3Aji
K7GWTrojan ( 005041e71 )
Cybereasonmalicious.8a652e
BitDefenderThetaGen:NN.ZevbaF.34804.km0@aCac3Aji
CyrenW32/VBInject.HV.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Fareit-7495412-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.CYJD.elggqs
Ad-AwareGen:Heur.PonyStealer.km0@cCac3Aji
SophosML/PE-A + Mal/FareitVB-I
ComodoMalware@#8ce4c9rlug9e
F-SecureHeuristic.HEUR/AGEN.1112824
VIPRETrojan.Win32.Generic!BT
TrendMicroTSPY_HPFAREIT.SME
McAfee-GW-EditionBehavesLike.Win32.Fareit.ch
EmsisoftGen:Heur.PonyStealer.km0@cCac3Aji (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PSW.Fareit.igs
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1112824
Antiy-AVLTrojan/Win32.BTSGeneric
ArcabitTrojan.PonyStealer.ED4E45
SUPERAntiSpywareTrojan.Agent/Gen-VB
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Heur.PonyStealer.km0@cCac3Aji
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/VBKrypt.RP.X1764
VBA32BScope.Adware.Conduit
ALYacGen:Heur.PonyStealer.km0@cCac3Aji
MAXmalware (ai score=82)
MalwarebytesTrojan.DorkBot.ED
PandaTrj/GdSda.A
ZonerTrojan.Win32.48201
ESET-NOD32a variant of Win32/Injector.DOOU
TrendMicro-HouseCallTSPY_HPFAREIT.SME
RisingTrojan.Injector!1.B459 (CLASSIC)
YandexTrojan.PWS.Fareit!woLLtyE/7hg
IkarusTrojan.VB.Crypt
eGambitUnsafe.AI_Score_100%
FortinetW32/Injector.DKPK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.DorkBot.ED?

Trojan.DorkBot.ED removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment