Fake Trojan

Trojan:Win32/FakePlayer.A removal guide

Malware Removal

The Trojan:Win32/FakePlayer.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/FakePlayer.A virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Trojan:Win32/FakePlayer.A?


File Info:

name: 5B0DBA1426D77DC37F84.mlw
path: /opt/CAPEv2/storage/binaries/ec56674bf872e299eb87bedf523f97bb23e6417357623d5133a37e2fa1f4724e
crc32: ED0D75D9
md5: 5b0dba1426d77dc37f84c5e513874bbe
sha1: 89ffc995c6c6b46774e34fa8d5fdc6748d6852e2
sha256: ec56674bf872e299eb87bedf523f97bb23e6417357623d5133a37e2fa1f4724e
sha512: e8031cb9587366f52831372e11451545925c1a3abbf39040b14383015f6d8669830b05c897ffab6b46ae0cc8b540993f862d635641c2595ca1c73854f91f12fc
ssdeep: 6144:yGiZEMWQp1SANDatDzdkzmvMOV+S9TRr0fi5F7Kbug+al+5gyqav5tgt8Wow:XMWQDSXpkm0yTRr15FlHEyHDgt8fw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15694F02A3646C967D1814AB5DDA1E3F6A27CBD98FD454383B7F43F9FBCB15A80908201
sha3_384: 88b42acff1b0306825f1c215bd1967a578019ca6df352928736a5b5fa7a09a02e6d93ae15e5315cbe8bb83566ef6d42f
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2008-11-20 20:28:21

Version Info:

0: [No Data]

Trojan:Win32/FakePlayer.A also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Midie.134863
FireEyeGen:Variant.Midie.134863
SkyhighGenericRXAQ-ET!D77FE171BCDD
ALYacGen:Variant.Midie.134863
MalwarebytesMalware.AI.4095963901
VIPREGen:Variant.Midie.134863
SangforAdware.Win32.Agent.Vj9m
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/FakePlayer.987fd96d
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.5c6c6b
ArcabitTrojan.Midie.D20ECF
VirITTrojan.Win32.Agent2.AHPG
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.Agent.NUB
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Agent-360074
BitDefenderGen:Variant.Midie.134863
NANO-AntivirusTrojan.Win32.Agent.cgdxc
AvastWin32:Adware-gen [Adw]
TencentWin32.Trojan.Agen.Dwnw
EmsisoftGen:Variant.Midie.134863 (B)
F-SecureTrojan.TR/Dldr.Agent.fnfd
DrWebAdware.MovieZone
TrendMicroTROJ_GORIADU.SMZ
SophosGeneric Reputation PUA (PUA)
JiangminTrojanDownloader.Agent.csvj
VaristW32/Agent.HLO.gen!Eldorado
AviraHEUR/AGEN.1337904
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Agent
MicrosoftTrojan:Win32/FakePlayer.A
ViRobotTrojan.Win.Z.Agent.419679
GDataGen:Variant.Midie.134863
GoogleDetected
AhnLab-V3Trojan/Win32.Downloader.C69730
McAfeeGenericRXAQ-ET!D77FE171BCDD
VBA32TrojanDownloader.Agent
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GORIADU.SMZ
RisingAdWare.Win32.HXBBS.a (CLASSIC)
IkarusTrojan-Dropper
MaxSecureTrojan.Malware.121218.susgen
FortinetAdware/Agent
BitDefenderThetaGen:NN.ZexaF.36792.6r1@aWRDKqmj
AVGWin32:Adware-gen [Adw]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/FakePlayer.A?

Trojan:Win32/FakePlayer.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment