Fake Trojan

Trojan.Email.FakeDoc removal guide

Malware Removal

The Trojan.Email.FakeDoc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Email.FakeDoc virus can do?

  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
eganchurchsupply.com
nimbacreations.com
www.nimbacreations.comvideo

How to determine Trojan.Email.FakeDoc?


File Info:

crc32: 1F4EE0C0
md5: d5b6e6065f3afb4f861697e8485e12ed
name: D5B6E6065F3AFB4F861697E8485E12ED.mlw
sha1: f54bea87fc77293f4ed045abf3c6db8b6aa540db
sha256: d0523d4671e3e5d85b6f04c1b96eefce621e4715d966093cd8e2b709d69fdacb
sha512: 65a93755e5d1a05a2c87b67945c6dc1b2549b5c8e5a163b14adf6d4f271422979cfa4856f8102bb1606b7f16a22ffc0e85876fcbb0d44a81300431b3117ccb67
ssdeep: 384:PMUveSnhsCUYlcuj7rpHYd0RsNuxCFtu/lIwo59NV23BFVb2h4lAbZ719e9toXFS:NnnqQFj7rpHYdYsNuxQtu/lIwonNV23v
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Email.FakeDoc also known as:

BkavW32.FamVT.GeND.Trojan
K7AntiVirusTrojan-Downloader ( 0040f7f11 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad3.28161
CynetMalicious (score: 100)
CAT-QuickHealTrojanDownloader.Upatre.A4
ALYacTrojan.GenericKD.1568942
CylanceUnsafe
ZillyaTrojan.Zbot.Win32.148217
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan-Downloader ( 0040f7f11 )
Cybereasonmalicious.65f3af
BaiduWin32.Trojan-Downloader.Waski.a
CyrenW32/Trojan.STBV-1552
SymantecDownloader.Upatre!gen5
ESET-NOD32Win32/TrojanDownloader.Waski.A
ZonerTrojan.Win32.21393
APEXMalicious
AvastWin32:Agent-AUID [Trj]
ClamAVWin.Trojan.Zbot-58776
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.1568942
NANO-AntivirusTrojan.Win32.Zbot.ctlpnf
ViRobotTrojan.Win32.U.Agent.17920.B
MicroWorld-eScanTrojan.GenericKD.1568942
TencentTrojan.Win32.Bublik.cbds
Ad-AwareTrojan.GenericKD.1568942
SophosML/PE-A + Troj/DwnLdr-LJB
ComodoTrojWare.Win32.Upatre.S@59gkks
BitDefenderThetaGen:NN.ZexaF.34236.bqX@ays8QZoi
VIPRETrojan.Win32.Upatre.jr (v)
TrendMicroTROJ_UPATRE.SMDA
McAfee-GW-EditionDownloader-FSH!D5B6E6065F3A
FireEyeGeneric.mg.d5b6e6065f3afb4f
EmsisoftTrojan.GenericKD.1568942 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Zbot.ebwe
AviraTR/Yarwi.B.185
Antiy-AVLTrojan/Generic.ASMalwS.80A73F
MicrosoftTrojanDownloader:Win32/Upatre.AA
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.1568942
AhnLab-V3Spyware/Win32.Zbot.R97896
Acronissuspicious
McAfeeDownloader-FSH
MAXmalware (ai score=82)
VBA32TrojanSpy.Zbot
MalwarebytesTrojan.Email.FakeDoc
PandaGeneric Malware
TrendMicro-HouseCallTROJ_UPATRE.SMDA
RisingDownloader.Waski!1.A489 (CLASSIC)
YandexTrojanSpy.Zbot!3v1c3PfnMzc
IkarusTrojan-PWS.Win32.Kegotip.C
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.A!tr
AVGWin32:Agent-AUID [Trj]
Paloaltogeneric.ml

How to remove Trojan.Email.FakeDoc?

Trojan.Email.FakeDoc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment