Fake Trojan

Trojan.FakeDoc removal guide

Malware Removal

The Trojan.FakeDoc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.FakeDoc virus can do?

  • Network activity detected but not expressed in API logs

How to determine Trojan.FakeDoc?


File Info:

crc32: BD016956
md5: 9fa576521db4e870258b3aedad5c75e1
name: 40416___.exe
sha1: 225d00461dc6565d7a49e98841cf69498b97536e
sha256: d105e0972dc37f9b695d9b6af1fa08f597cbd8ce14f9cb16b953e60508255def
sha512: 60924c323867f898027139675f860d937405d73aa8c04e9013b16572460dd19a6dff449c5fcddd6dc49ff802fbb302bd205d02334e1294ae0c408a033426585d
ssdeep: 12288:3CdOy3vVrKxR5CXbNjAOxK/j2n+4YG/6c1mFFja3mXgcjfRlgsUBgaQSZQ:3Cdxte/80jYLT3U1jfsWaQSZQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 0.0.0.0
CompanyName: uKUpTiBGW
Translation: 0x0809 0x04b0

Trojan.FakeDoc also known as:

MicroWorld-eScanGen:Variant.Ursu.412242
FireEyeGen:Variant.Ursu.412242
CAT-QuickHealTrojan.IGENERIC
McAfeeArtemis!9FA576521DB4
CylanceUnsafe
AegisLabTrojan.Script.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 0054bc841 )
BitDefenderGen:Variant.Ursu.412242
K7GWTrojan ( 0054bc841 )
CrowdStrikewin/malicious_confidence_60% (D)
TrendMicroTROJ_GEN.R015C0PJC19
F-ProtW32/AutoIt.NC.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataGen:Variant.Ursu.412242
KasperskyHEUR:Trojan.Script.Generic
AlibabaTrojan:Win32/Autoit.649d110e
NANO-AntivirusTrojan.Win32.Autoit.gdarog
Ad-AwareGen:Variant.Ursu.412242
SophosTroj/Autoit-CPL
ComodoMalware@#23jnjne2obifh
F-SecureWorm.WORM/FakeExt.Gen8
DrWebTrojan.AutoIt.618
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.ch
EmsisoftGen:Variant.Ursu.412242 (B)
IkarusTrojan.Win32.Autoit
CyrenW32/AutoIt.NC.gen!Eldorado
WebrootW32.Trojan.Gen
AviraWORM/FakeExt.Gen8
Antiy-AVLGrayWare/Autoit.WorkingDir.a
Endgamemalicious (high confidence)
ArcabitTrojan.Ursu.D64A52
ZoneAlarmHEUR:Trojan.Script.Generic
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/Win32.Inject.R262490
Acronissuspicious
ALYacGen:Variant.Ursu.412242
MAXmalware (ai score=86)
VBA32Trojan.Ditertag
MalwarebytesTrojan.FakeDoc
ESET-NOD32a variant of Win32/Autoit.OGC
TrendMicro-HouseCallTROJ_GEN.R015C0PJC19
FortinetAutoIt/Agent.OGC!tr
AVGAutoIt:Runner-BG [Trj]
Cybereasonmalicious.21db4e
AvastAutoIt:Runner-BG [Trj]
Qihoo-360Win32/Trojan.Script.ed4

How to remove Trojan.FakeDoc?

Trojan.FakeDoc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment