Fake Trojan

What is “TrojanDownloader:Win32/FakeReprox.B”?

Malware Removal

The TrojanDownloader:Win32/FakeReprox.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/FakeReprox.B virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/FakeReprox.B?


File Info:

name: AC15732CFF33046FBAEC.mlw
path: /opt/CAPEv2/storage/binaries/0549a62532a517e5f730a9c0e7633c9240b5d724216e3e04ccc3519bdadaf337
crc32: 59292841
md5: ac15732cff33046fbaec085be98bf316
sha1: b017df6d1212b778f3ff9f29111e3c16eab414e8
sha256: 0549a62532a517e5f730a9c0e7633c9240b5d724216e3e04ccc3519bdadaf337
sha512: 095355dfbc87487fcac59042c54106a4eead02bfb75096f9cf17730a89dd288712bdd8002f9bf6c857d30d49e42f6c94adbe37e65fa88f524f10c5b45e323287
ssdeep: 1536:/T0fVgSMPwr7hspZpSgIDtbiNgTv5h+fi9pmA3kI:7qg9Ir7hszpSdDV0gTr2A
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B3B3020B34959DB1E9D9C9B99E8701F2FCC851D24B011F0653E1DAA7EC2A7E87C3C149
sha3_384: 3e72bb64765f3a723f51a13cb7d94f1714955e255a1a0e68a181cc86879b0d720f51a5fc4267e5e690a60d3bbbf56642
ep_bytes: e84c000000c399000000830000691232
timestamp: 2007-02-07 01:37:43

Version Info:

0: [No Data]

TrojanDownloader:Win32/FakeReprox.B also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.FakeAntivirus.Gen
FireEyeGeneric.mg.ac15732cff33046f
SkyhighBehavesLike.Win32.Generic.cm
ALYacTrojan.FakeAntivirus.Gen
Cylanceunsafe
VIPRETrojan.FakeAntivirus.Gen
SangforTrojan.Win32.Save.a
AlibabaTrojanDownloader:Win32/Katusha.dcce38cb
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.XPAntivirus.AF
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Agent-400130
KasperskyPacked.Win32.Katusha.a
BitDefenderTrojan.FakeAntivirus.Gen
NANO-AntivirusTrojan.Win32.Katusha.bgzkye
AvastWin32:FakeAlert-2
TencentWin32.Packed.Katusha.Pzfl
TACHYONTrojan/W32.FakeAntivirus.114688
SophosMal/EncPk-FX
F-SecureTrojan.TR/Crypt.ZPACK.Gen
DrWebTrojan.DownLoad.15200
ZillyaAdware.XPAntivirus.Win32.65
EmsisoftTrojan.FakeAntivirus.Gen (B)
SentinelOneStatic AI – Suspicious PE
JiangminPacked.Katusha.dsn
WebrootAdware.Rogue.Security.Products
VaristW32/Packed.PSJD-0087
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLTrojan[Packed]/Win32.Katusha
KingsoftWin32.Troj.Undef.a
MicrosoftTrojanDownloader:Win32/FakeReprox.B
XcitiumTrojWare.Win32.Trojan.Katusha.~A@1qgp20
ArcabitTrojan.FakeAntivirus.Gen
ZoneAlarmPacked.Win32.Katusha.a
GDataTrojan.FakeAntivirus.Gen
GoogleDetected
McAfeeFakeAV-CN.gen.i
MAXmalware (ai score=100)
VBA32BScope.Trojan.Download
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/CI.A
RisingMalware.Undefined!8.C (TFE:2:FZGsQ4N0XqM)
YandexTrojan.Fraudpack.Gen
IkarusTrojan-Downloader.Win32.FakeAlert
MaxSecureTrojan.Malware.15014.susgen
FortinetW32/FakeAlert.A
BitDefenderThetaAI:Packer.F084AB051E
AVGWin32:FakeAlert-2
Cybereasonmalicious.d1212b
DeepInstinctMALICIOUS

How to remove TrojanDownloader:Win32/FakeReprox.B?

TrojanDownloader:Win32/FakeReprox.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment