In this article, I am going to clarify the way the Fakemplay trojan injected right into your PC, and also how to delete Fakemplay trojan virus.
What is Fakemplay trojan?
Name | Fakemplay |
Infection Type | Trojan |
Symptoms |
|
Similar behavior | Carberp, Bredolab, Pstinb, InstClick, Trafog, Wecod |
Fix Tool | See If Your System Has Been Affected by Fakemplay trojan |
Trojan viruses are among the leading malware kinds by its injection frequency for quite a very long time. And currently, throughout the pandemic, when malware became extremely active, trojan viruses enhanced their activity, too. You can see a number of messages on diverse websites, where users are grumbling concerning the Fakemplay trojan virus in their computers, as well as requesting for assisting with Fakemplay trojan virus elimination.
Trojan Fakemplay is a type of virus that injects into your computer, and then executes different destructive functions. These features depend on a type of Fakemplay trojan: it may act as a downloader for many other malware or as a launcher for another malicious program which is downloaded in addition to the Fakemplay trojan. During the last 2 years, trojans are also dispersed via email attachments, and most of instances used for phishing or ransomware infiltration.
Fakemplay2 also known as
Bkav | W32.AIDetectVM.malware1 |
Elastic | malicious (high confidence) |
MicroWorld-eScan | Gen:Trojan.Heur.VP.tm0@au5ghFaO |
FireEye | Generic.mg.a63767ce0621a551 |
Qihoo-360 | HEUR/Malware.QVM06.Gen |
ALYac | Gen:Trojan.Heur.VP.tm0@au5ghFaO |
Cylance | Unsafe |
VIPRE | Trojan.Win32.Generic.pak!cobra |
AegisLab | Worm.Win32.VBNA.lmFW |
Sangfor | Malware |
K7AntiVirus | Trojan ( 004bcce41 ) |
BitDefender | Gen:Trojan.Heur.VP.tm0@au5ghFaO |
K7GW | Trojan ( 004bcce41 ) |
CrowdStrike | win/malicious_confidence_100% (D) |
Baidu | Win32.Worm.VB.sn |
Cyren | W32/Ructo.A.gen!Eldorado |
Symantec | ML.Attribute.HighConfidence |
APEX | Malicious |
Avast | Win32:Bancos-BUS [Trj] |
ClamAV | Win.Trojan.Vilsel-9762776-0 |
Kaspersky | Backdoor.Win32.Poison.hwyk |
NANO-Antivirus | Trojan.Win32.AVKill.hqnrz |
ViRobot | Trojan.Win32.A.PSW-VB.326144 |
Rising | Trojan.Fakemplay!8.2F0C (TFE:4:9KvVDsTUfLB) |
Ad-Aware | Gen:Trojan.Heur.VP.tm0@au5ghFaO |
Emsisoft | Gen:Trojan.Heur.VP.tm0@au5ghFaO (B) |
Comodo | Packed.Win32.MUPX.Gen@24tbus |
F-Secure | Trojan.TR/VB.Downloader.Gen |
DrWeb | Trojan.AVKill.2 |
Zillya | Trojan.VB.Win32.72520 |
McAfee-GW-Edition | BehavesLike.Win32.Downloader.fm |
Sophos | ML/PE-A + Mal/VB-CF |
Ikarus | Worm.Win32.Ructo |
Jiangmin | Trojan/PSW.VB.bms |
Webroot | W32.Malware.Gen |
Avira | TR/VB.Downloader.Gen |
Antiy-AVL | Trojan[Backdoor]/Win32.Poison |
Microsoft | Trojan:Win32/Fakemplay.A |
Arcabit | Trojan.Heur.VP.ED1252E |
ZoneAlarm | Backdoor.Win32.Poison.hwyk |
GData | Gen:Trojan.Heur.VP.tm0@au5ghFaO |
Cynet | Malicious (score: 100) |
Acronis | suspicious |
McAfee | GenericR-HSR!A63767CE0621 |
MAX | malware (ai score=81) |
VBA32 | TScope.Trojan.VB |
Malwarebytes | Malware.Heuristic.1003 |
Panda | Generic Malware |
ESET-NOD32 | a variant of Win32/VB.OAI |
Tencent | Win32.Backdoor.Poison.Lkxb |
Yandex | Trojan.GenAsa!le/VwS89PZ0 |
SentinelOne | Static AI – Malicious PE – Worm |
Fortinet | W32/VB.ODV!tr |
BitDefenderTheta | AI:Packer.691DEF611F |
AVG | Win32:Bancos-BUS [Trj] |
Cybereason | malicious.e0621a |
Paloalto | generic.ml |
Domains that associated with Fakemplay:
0 | www.youtube.com |
What are the symptoms of Fakemplay trojan?
- Executable code extraction;
- Attempts to connect to a dead IP:Port (4 unique times);
- Creates RWX memory;
- Repeatedly searches for a not-found process, may want to run with startbrowser=1 option;
- A process created a hidden window;
- Performs some HTTP requests;
- Unconventionial language used in binary resources: Portuguese (Brazilian);
- The executable is compressed using UPX;
- Uses Windows utilities for basic functionality;
- Installs itself for autorun at Windows startup;
- Exhibits possible ransomware file modification behavior;
- Creates a hidden or system file;
- Attempts to modify proxy settings;
The frequent indicator of the Fakemplay trojan virus is a steady entrance of a wide range of malware – adware, browser hijackers, and so on. Due to the activity of these destructive programs, your system comes to be really slow: malware consumes substantial amounts of RAM and CPU abilities.
An additional noticeable result of the Fakemplay trojan virus visibility is unknown processes displayed in task manager. Frequently, these processes may try to imitate system processes, but you can recognize that they are not legit by checking out the source of these tasks. Quasi system applications and Fakemplay trojan’s processes are always listed as a user’s processes, not as a system’s.
How to remove Fakemplay trojan virus?
- Download and install Loaris Trojan Remover.
- Open Loaris and perform a “Standard scan“.
- “Move to quarantine” all items.
- Open “Tools” tab – Press “Reset Browser Settings“.
- Approve the reset pressing “Yes” button in the appeared window.
- Restart your computer.
To delete Fakemplay trojan and also ensure that all added malware, downloaded with the help of this trojan, will certainly be eliminated, too, I’d advise you to use Loaris Trojan Remover.
Fakemplay removal guide
To spot and remove all malware on your PC using Loaris, it’s better to utilize Standard or Full scan. Removable scan, as well as Custom, will scan only specified locations, so these scans cannot provide the full information.
You can observe the detects during the scan process goes. Nevertheless, to execute any actions against detected malicious items, you need to wait until the process is over, or to interrupt the scanning process.
To choose the special action for each detected malicious programs, choose the knob in front of the name of detected malware. By default, all malicious programs will be sent to quarantine.
How to remove Fakemplay Trojan?
Name: Fakemplay
Description: Trojan Fakemplay is a kind of virus that infiltrates into your computer, and after that performs different destructive functions. These features depend upon a type of Fakemplay trojan: it can act as a downloader for many other malware or as a launcher for another destructive program which is downloaded in addition to the Fakemplay trojan. During the last two years, trojans are also dispersed via e-mail attachments, and most of situations utilized for phishing or ransomware infiltration.
Operating System: Windows
Application Category: Trojan