Trojan

TrojanDownloader:O97M/EncDoc!MTB removal instruction

Malware Removal

The TrojanDownloader:O97M/EncDoc!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:O97M/EncDoc!MTB virus can do?

  • The office file contains anomalous features
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs

How to determine TrojanDownloader:O97M/EncDoc!MTB?


File Info:

crc32: E1551D02
md5: 1c4079fe194f835b0f30fbfdf69fdc0a
name: upload_file
sha1: 628e7d8aea95ea6cda69f914085f1807bdf90d8e
sha256: 4fa6c2c7fb5cc57569089d245f0dd1cbd72984a31b3f58c253507138320a3235
sha512: c00c8595addedfc6efab6b6ff58ed7d42e68765bcd0fde5aac566f0963aed5872fbd494a9610eb3f4e6c2a130b55e0213fdb39e99ed966fdfb582bda4b49b497
ssdeep: 768:BmQk3hOdsylKlgxopeiBNhZFGzE+cL2kdAJTKQtYi86k:Lk3hOdsylKlgxopeiBNhZFGzE+cL2kdz
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 10.0, Code page: 1252, Name of Creating Application: Microsoft Excel, Create Time/Date: Mon Sep 28 01:53:43 2020, Last Saved Time/Date: Fri Oct 2 11:06:47 2020, Security: 0

Version Info:

0: [No Data]

TrojanDownloader:O97M/EncDoc!MTB also known as:

DrWebExploit.Siggen2.47485
CAT-QuickHealOle.Trojan.A965894
ALYacTrojan.Downloader.XLS.gen
K7AntiVirusTrojan ( 00568efb1 )
K7GWTrojan ( 00568efb1 )
CyrenTrojan.UJFE-6
SymantecTrojan.Gen.MBT
AvastOther:Malware-gen [Trj]
KasperskyHEUR:Trojan.Script.Generic
ViRobotXLS.Z.Agent.43008.JU
ComodoMalware@#2pwy21vtgiga8
McAfee-GW-EditionRDN/ZLoader
IkarusTrojan.DOC.Crypt
AviraW97M/Kryptik.hcfyg
MicrosoftTrojanDownloader:O97M/EncDoc!MTB
ZoneAlarmHEUR:Trojan.Script.Generic
GDataGeneric.Trojan.Agent.OEHXB9
CynetMalicious (score: 85)
McAfeeRDN/ZLoader
ESET-NOD32DOC/Kryptik.AC
FortinetMSExcel/Agent.AFC5!tr.dldr
AVGOther:Malware-gen [Trj]
Qihoo-360Generic/Trojan.Script.ed4

How to remove TrojanDownloader:O97M/EncDoc!MTB?

TrojanDownloader:O97M/EncDoc!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment