Trojan

Trojan.DOC.Downloader.AYO information

Malware Removal

The Trojan.DOC.Downloader.AYO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.DOC.Downloader.AYO virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs
  • Harvests information related to installed mail clients

How to determine Trojan.DOC.Downloader.AYO?


File Info:

crc32: 8D84DD1B
md5: 35547cc63ca17df20d96d74941bdd3ee
name: upload_file
sha1: 1996e3dbf1cdba9db29fa12b34e25aeb6d0c6659
sha256: 1e587987763029794ca3556f797c207cee9c88a0fc59bd1ac066dcb5d86a2ac9
sha512: f6c843d2664c3965eadcb7411ac4680f6d6bccd08deb3c2136873c4eb9fc8ab929f313102b401161c613d312f2ebd56fd76f3232eb156b62153ddda0303535f4
ssdeep: 1536:w3m48W5lrXcuYd0dGtgu8LoSRNHzz4lg8nV4b7Y7Dt5W9GvMQ/9iAl1a3km+a9A:j4PrXcuQuvpzm4bkiaMQgAlSm
type: Composite Document File V2 Document, corrupt: Can't read SSAT

Version Info:

0: [No Data]

Trojan.DOC.Downloader.AYO also known as:

DrWebExploit.Siggen2.25194
MicroWorld-eScanTrojan.DOC.Downloader.AYO
FireEyeTrojan.DOC.Downloader.AYO
CAT-QuickHealOLE.Emotet.38799
McAfeeRDN/Generic Downloader.x
AegisLabTrojan.MSWord.Generic.4!c
SymantecW97M.Downloader
TrendMicro-HouseCallPossible_SMPOWLOADBB4
AvastOther:Malware-gen [Trj]
ClamAVDoc.Dropper.EmotetIOS-9402070-0
BitDefenderTrojan.DOC.Downloader.AYO
TencentWin32.Trojan.Doc.Liqm
Ad-AwareTrojan.DOC.Downloader.AYO
F-SecureMalware.W97M/Dldr.Emotet.zxeid
TrendMicroPossible_SMPOWLOADBB4
AviraW97M/Dldr.Emotet.zxeid
MAXmalware (ai score=82)
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ArcabitTrojan.DOC.Downloader.AYO
GDataTrojan.DOC.Downloader.AYO
CynetMalicious (score: 85)
IkarusTrojan-Downloader.VBA.Emotet
AVGOther:Malware-gen [Trj]
Qihoo-360Generic/Trojan.Downloader.0f4

How to remove Trojan.DOC.Downloader.AYO?

Trojan.DOC.Downloader.AYO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment