Fake Trojan

Trojan.FakePiriform removal instruction

Malware Removal

The Trojan.FakePiriform is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.FakePiriform virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan.FakePiriform?


File Info:

crc32: 2778C838
md5: 1238aad22b72e430feada810c7b5be05
name: 1238AAD22B72E430FEADA810C7B5BE05.mlw
sha1: 35df9a4067ee6ef018443bbd3ad9dc6522156fb4
sha256: 033b667b6802143c645ff69a7f5d261c944377ef7d18cfa2efa9aca75ed29ff8
sha512: 9430c58d391de49792a160acf6f1e48f0ff0be1703e2979af856df08f92a6d5579387fa68f9cdb27c313cec88719374eddf8a8016b2808c1299b47aea5d3b43b
ssdeep: 24576:2eFAOEsjHlowW8YVm5LWZVAvrbbvcO4zj:xF9EAWnATnvcO4zj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2017 Piriform Ltd
InternalName: ccleaner
FileVersion: 5, 32, 00, 6129
CompanyName: Piriform Ltd
Comments: CCleaner
ProductName: CCleaner
ProductVersion: 5, 32, 00, 6129
FileDescription: CCleaner
OriginalFilename: ccleaner.exe
Translation: 0x0409 0x04b0

Trojan.FakePiriform also known as:

BkavW32.FamVT.DglapzGA.Trojan
K7AntiVirusTrojan ( 0052a14d1 )
Elasticmalicious (high confidence)
DrWebTrojan.BtcMine.2425
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S2074537
ALYacTrojan.BitCoinMiner.DQ
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1375217
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Katusha.c388a3c4
K7GWTrojan ( 0052a14d1 )
Cybereasonmalicious.22b72e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GEIU
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.BitCoinMiner.DQ
NANO-AntivirusTrojan.Win32.SpyEyes.eyufue
MicroWorld-eScanTrojan.BitCoinMiner.DQ
TencentMalware.Win32.Gencirc.10b39bd1
Ad-AwareTrojan.BitCoinMiner.DQ
SophosICLoader (PUA)
ComodoTrojWare.Win32.SpyEyes.BSWP@7k7ll0
TrendMicroTrojan.Win32.EKSTAK.SM
McAfee-GW-EditionPacked-FBT!1238AAD22B72
FireEyeGeneric.mg.1238aad22b72e430
EmsisoftApplication.CoinMiner (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Miner.ccq
AviraHEUR/AGEN.1114789
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.TSGeneric
SUPERAntiSpywareHack.Tool/Gen-BitCoinMiner
GDataTrojan.BitCoinMiner.DQ
AhnLab-V3Unwanted/Win32.Miner.R222419
Acronissuspicious
McAfeePacked-FBT!1238AAD22B72
VBA32Trojan.Miner
MalwarebytesTrojan.FakePiriform
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.EKSTAK.SM
RisingTrojan.CoinMiner!1.AFF9 (CLASSIC)
YandexTrojan.GenAsa!KX68J4OwKgQ
IkarusTrojan.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.BSHP!tr
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml

How to remove Trojan.FakePiriform?

Trojan.FakePiriform removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment