Threat Database Trojans Trojan.Downloader.Dofoil

Trojan.Downloader.Dofoil

By CagedTech in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 360
First Seen: January 2, 2012
Last Seen: February 7, 2022
OS(es) Affected: Windows

Dofoil is a configurable Trojan downloader related to rogue security programs such as System Fix, Fake HDD, HDD Repair, System Recovery, etc. Dofoil downloads random files that will be executed to perform threatening actions. The main distribution method used by Dofoil is adding itself to spam e-mail attachments or links that when accessed, open a port to Dofoil's installation. However, Dofoil may be purchased through the Black Market or installed using vulnerabilities on the targeted computer. Dofoil may receive instructions from remote servers and use a rootkit to prevent its detection and removal. Trojans that are helped by rootkits are hard to be noticed until is almost too late since remaining unattended on the infected computer they may literally destroy the machine. Therefore, if any abnormal behavior presented by your computer may point to Dofoil's presence, you should use a potent malware scanner to detect and remove Dofoil from your machine.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Panda Trj/Zbot.M
AVG Downloader.Generic12.BBJP
Ikarus Trojan-Downloader.Win32.Injecter
AntiVir TR/Kazy.56214.1
BitDefender Gen:Variant.Kazy.56214
Kaspersky Trojan-Downloader.Win32.Injecter.itl
Avast Win32:Agent-AOCY [Trj]
NOD32 a variant of Win32/Kryptik.AAXR
K7AntiVirus Trojan-Downloader
McAfee Generic BackDoor.xd
AVG SHeur4.MCL
Ikarus Trojan-Ransom.Win32.PornoCodec
Sophos Troj/Bredo-OL
BitDefender Gen:Variant.Kazy.51075
Kaspersky Trojan.Win32.Jorik.MokesLoader.ik

SpyHunter Detects & Remove Trojan.Downloader.Dofoil

File System Details

Trojan.Downloader.Dofoil may create the following file(s):
# File Name MD5 Detections
1. dxdiag.exe 30398f70808f9582a9299c28ffbc3446 7
2. csrss.exe f0065812dcb61f9e351bb973d1ce18ac 6
3. csrss.exe 7ebb0228172a266078f00dde0f2faf1e 6
4. csrss.exe c6f79e1796fe6b52d80a682346049aa2 3
5. csrss.exe 043c60e3cbc76eb47d6e3fedf001a697 3
6. 5016.sys 29cc35544b0556a1d7cec1d2c25f7002 3
7. 6A18.exe d0bb8db6cc593978a74d494fa8135086 2
8. dxdiag.exe e58981230326bdc66f9b64dafc9d61e5 2
9. rnkho.exe d10f581c83e0d3a5d47dfc18a79a524c 1
10. winmgr.exe fc09df5ce69d5c250f36740f87326680 1
11. csrss.exe 84d0cd7030ff736d7e6aeecc4958ecbd 1
12. csrss.exe cc02f02dcc5dae3a36f7daac483afd44 1
13. qhiuy.dll b370f9053149512ab356fb8b9f7cd1c1 1
14. gcwcfwfa.exe 7a909452e94ef6a3c9f457cff5feec54 1
15. file.exe 3000152d45090b0bd35d18c8c4ac13d2 0
16. file.exe fe0858c88a175f2396bd5f7591142f84 0

Related Posts

Trending

Most Viewed

Loading...