Trojan

About “Trojan:Win32/Dogrobot.H” infection

Malware Removal

The Trojan:Win32/Dogrobot.H is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dogrobot.H virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with NsPack
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Dogrobot.H?


File Info:

name: 10C510DB1D3C46D91FB3.mlw
path: /opt/CAPEv2/storage/binaries/02449a36b1888f5c7932c059f0c6c4338276e051231298092a910ba0985b2357
crc32: 64D188B1
md5: 10c510db1d3c46d91fb3075641aa4471
sha1: 7d0610e087c9d7f9bbe904ae4b51863f5dc0bf9e
sha256: 02449a36b1888f5c7932c059f0c6c4338276e051231298092a910ba0985b2357
sha512: 63e4696465edc3da4b5ec3a865f66b1a82b7ba2a5c030f32d9a9b83b0d08b966d745fcad6c2740fb3bab05244ea7b17805b3d0d17a8fa5d4c0e4804cfe3b15a0
ssdeep: 1536:ZC/PB8MbXbzsooHgAAt8cdrHTCL4Dt9iaZokJ212+z4acho1mH9vTxbu:mP1Xb4ooAAA6c9RJoaZo91ANImTb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17604BF12BDCA44F3CAC5463150EA1B33873FA6B113A25D931F58F96A1E326F2A536743
sha3_384: 09ad389262d6c9151ce86a596ac219c678565468b668489f53732a41a5912c7d96a3b215aca88d58e53a60bf8734fe00
ep_bytes: 558bec6aff683061400068fc38400064
timestamp: 1970-01-01 00:00:00

Version Info:

Comments:
CompanyName:
FileDescription:
FileVersion: 1, 0, 0, 1
InternalName:
LegalCopyright: Copyright ? 2008
LegalTrademarks:
OriginalFilename:
PrivateBuild:
ProductName:
ProductVersion: 1, 0, 0, 1
SpecialBuild:
Translation: 0x0804 0x04b0

Trojan:Win32/Dogrobot.H also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Geral.a!c
tehtrisGeneric.Malware
DrWebTrojan.MulDrop.31219
FireEyeGeneric.mg.10c510db1d3c46d9
CAT-QuickHealDownloader.Geral.13707
SkyhighBehavesLike.Win32.Virut.ct
McAfeeArtemis!10C510DB1D3C
MalwarebytesMalware.AI.4149830776
ZillyaDownloader.Geral.Win32.6404
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005257651 )
AlibabaTrojanDownloader:Win32/Geral.bd3d2e88
K7GWTrojan ( 005257651 )
BitDefenderThetaGen:NN.ZexaF.36802.lm0@aOJyeZkb
VirITTrojan.Win32.OLG.BBB
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Agent.PBD
ZonerProbably Heur.ExeHeaderP
APEXMalicious
ClamAVWin.Packed.Onlinegames-7070872-0
KasperskyTrojan-Downloader.Win32.Geral.y
NANO-AntivirusTrojan.Win32.Geral.crrgs
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.VB.ajk
TACHYONTrojan-PWS/W32.WebGame.180224.U
SophosMal/EncPk-BW
F-SecureTrojan.TR/Dropper.Gen
TrendMicroTSPY_GAMETHI.SMA
Trapminemalicious.high.ml.score
IkarusTrojan-GameThief.Win32.OnLineGames
JiangminTrojan/PSW.OnLineGames.ayvy
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/Downloader-Sml!Eldorado
Antiy-AVLTrojan[Downloader]/Win32.Geral
KingsoftWin32.HeurC.KVM003.a
XcitiumTrojWare.Win32.PSW.OnLineGames.~ETB@6zyev
ViRobotTrojan.Win32.PSWIGames.180224
ZoneAlarmTrojan-Downloader.Win32.Geral.y
MicrosoftTrojan:Win32/Dogrobot.H
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Geral.C177674
Acronissuspicious
VBA32TrojanPSW.OnLineGames.a
MAXmalware (ai score=100)
Cylanceunsafe
PandaW32/Spamta.QO.worm
TrendMicro-HouseCallTSPY_GAMETHI.SMA
RisingTrojan.KillAV!1.660D (CLASSIC)
YandexTrojan.DL.Geral!tZ+CEJx1OGc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.988072.susgen
FortinetW32/OnLineGames.BKZ!tr.pws
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan[downloader]:Win/Geral.y

How to remove Trojan:Win32/Dogrobot.H?

Trojan:Win32/Dogrobot.H removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment