Trojan

DOC/TrojanDownloader.Agent.AYB removal guide

Malware Removal

The DOC/TrojanDownloader.Agent.AYB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What DOC/TrojanDownloader.Agent.AYB virus can do?

  • The office file has a unconventional code page: ANSI Cyrillic; Cyrillic (Windows)
  • The office file contains a macro
  • The office file contains a macro with auto execution
  • The office file contains anomalous features

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine DOC/TrojanDownloader.Agent.AYB?


File Info:

crc32: 9935682D
md5: 5ba2e107157096bb429da1513c3cf4d1
name: upload_file
sha1: 4243e1cdbb35121e5fb809402beea8332e4a5d6a
sha256: 0734e62b10ab9dcb9d8e2d1e8cf8c91e87c14cd8fd81e29d87025c5ca44f14ae
sha512: f9b0f6ed723c3046bfbe355643086cc108a5580277eb25adfbc104df3edace77c5fe554c540a30fc4630dcd2bdd96202278f590f6c148aee210efb0736d59a5a
ssdeep: 12288:U2+J+l5QvSoOUkQGPRoswLLjfsHJNF05F:PJl5QrrkQOCHspN4
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1251, Name of Creating Application: Microsoft Excel, Create Time/Date: Sat Sep 16 01:00:00 2006, Last Saved Time/Date: Sun Oct 18 17:05:43 2020, Security: 0

Version Info:

0: [No Data]

DOC/TrojanDownloader.Agent.AYB also known as:

CAT-QuickHealTrojan.XLS.Downloader.39295
KasperskyHEUR:Trojan.Script.Generic
DrWebExploit.Siggen2.51311
McAfee-GW-EditionArtemis!Trojan
AviraW97M/Dldr.Agent.njjyq
MicrosoftTrojanDownloader:O97M/Qakbot.YB!MTB
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataMacro.Trojan-Downloader.Agent.AVJ
TACHYONTrojan/XF.Downloader.Gen
ZonerProbably Heur.W97ShellB
ESET-NOD32DOC/TrojanDownloader.Agent.AYB
IkarusTrojan-Downloader.Office.Crypt
FortinetXF/Agent.AYB!tr.dldr

How to remove DOC/TrojanDownloader.Agent.AYB?

DOC/TrojanDownloader.Agent.AYB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment