Threat Search: 

ThreatExpert's Statistics for FakeAlert-AB.dldr [McAfee]:

FakeAlert-AB.dldr [McAfee] is also known as:
Threat AliasNumber of Incidents
Downloader.MisleadApp [Symantec]13
Trojan:Win32/FakeXPA [Microsoft]8
Adware:Win32/InternetSpeedMonitor [Microsoft]5
Trojan.Win32.Small [Ikarus]5
not-a-virus:FraudTool.Win32.XPAntivirus.bt [Kaspersky Lab]4
Troj/Clicker-FF [Sophos]4
Trojan Horse [Symantec]4
Trojan.Adclicker [Symantec]4
Trojan.Adclicker!sd6 [PC Tools]4
Trojan.Win32.Agent [Ikarus]4
Trojan.Win32.Agent.avwh [Kaspersky Lab]4
TrojanDownloader:Win32/Fakeinit [Microsoft]4
Win-Trojan/Downloader.30720.CS [AhnLab]4
Mal/EncPk-CZ [Sophos]3
Mal/EncPk-EP, Mal/TibsPk-D [Sophos]3
RogueAntiSpyware.AntivirusXP2008 [PC Tools]3
Trojan.Win32.Small.bvb [Kaspersky Lab]3
Trojan:Win32/Alureon.gen!J [Microsoft]3
AntiVirusXP2008 [Symantec]2
Backdoor.Tidserv [Symantec]2
Mal/EncPk-HJ [Sophos]2
Mal/EncPk-HJ, Mal/EncPk-HJ [Sophos]2
Mal/FakeAV-Y [Sophos]2
Troj/FakeAV-E [Sophos]2
TROJ_FAKEAV.ALU [Trend Micro]2
Trojan.Win32.FakeXPA [Ikarus]2
Trojan:Win32/Tibs.J [Microsoft]2
Trojan-Downloader.MisleadApp!sd6 [PC Tools]2
Trojan-Downloader.Win32.Agent.bjur [Kaspersky Lab]2
Trojan-Downloader.Win32.Renos.AQ [Ikarus]2
Trojan-Dropper.Win32.Delf [Ikarus]2
Win32.SuspectCrc [Ikarus]2
XPAntivirus [Symantec]2
Backdoor.Paproxy [Symantec]1
Backdoor.Tidserv!sd6 [PC Tools]1
Backdoor.Win32.TDSS.ajh [Kaspersky Lab]1
Backdoor.Win32.TDSS.arn [Kaspersky Lab]1
Downloader [Symantec]1
Downloader.MisleadApp [PC Tools]1
Dropper/Malware.7680.B [AhnLab]1
Mal/EncPk-HM, Mal/FakeAV-V [Sophos]1
Mal/Generic-A [Sophos]1
Mal/Pushdo-A [Sophos]1
Mal/TDSS-A [Sophos]1
Mal/TDSS-A, Mal/EncPk-CZ [Sophos]1
not-a-virus:FraudTool.Win32.AntiVirus2008.ar [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.AntiVirus2008.be [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntiSpyware2009.d [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntivirus.lh [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntivirus.md [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntivirus.nf [Kaspersky Lab]1
Packed.Generic.183 [Symantec]1
Packed.Generic.187 [Symantec]1
Packed.Generic.188 [Symantec]1
Packed.Generic.200 [Symantec]1
Packed.Win32.Katusha.a [Kaspersky Lab]1
Program:Win32/Antivirus2008 [Microsoft]1
Program:Win32/XPAntiVirus [Microsoft]1
Troj/Agent-HLQ [Sophos]1
Troj/Agent-HRI [Sophos]1
Troj/Agent-IBZ [Sophos]1
Troj/Agent-JLF [Sophos]1
Troj/Dwldr-C [Sophos]1
Troj/DwnLdr-HIJ [Sophos]1
Troj/FakeAle-GU [Sophos]1
Troj/FakeAle-HW [Sophos]1
Troj/FakeAle-MV [Sophos]1
Troj/FakeAV-BV [Sophos]1
Troj/FakeVir-FI [Sophos]1
Troj/Fakevir-JL [Sophos]1
Troj/Virtum-Gen [Sophos]1
TROJ_DELF.HAL [Trend Micro]1
TROJ_DLOADER.GVO [Trend Micro]1
TROJ_DLOADER.QQR [Trend Micro]1
TROJ_FAKEALER.AP [Trend Micro]1
TROJ_FAKEALER.DD [Trend Micro]1
TROJ_FAKEALER.HX [Trend Micro]1
TROJ_FAKEALER.JC [Trend Micro]1
TROJ_FRAUDLOA.OS [Trend Micro]1
TROJ_FRAUDLOA.PP [Trend Micro]1
Trojan.Blusod [Symantec]1
Trojan.Dropper [Symantec]1
Trojan.Fakealert [Ikarus]1
Trojan.FakeAlert [PC Tools]1
Trojan.Fakeavalert [Symantec]1
Trojan.FraudPack!sd6 [PC Tools]1
Trojan.Pandex [Symantec]1
Trojan.Small!sd6 [PC Tools]1
Trojan.TDss.1 [Ikarus]1
Trojan.Win32.Agent.akto [Kaspersky Lab]1
Trojan.Win32.Agent.bxvs [Kaspersky Lab]1
Trojan.Win32.Agent2 [Ikarus]1
Trojan.Win32.Agent2.no [Kaspersky Lab]1
Trojan.Win32.Alureon.J [Ikarus]1
Trojan.Win32.FraudPack [Ikarus]1
Trojan.Win32.FraudPack.ang [Kaspersky Lab]1
Trojan.Win32.FraudPack.por [Kaspersky Lab]1
Trojan.Win32.Small.yfv [Kaspersky Lab]1
Trojan:Win32/Cutwail.AQ [Microsoft]1
Trojan:Win32/Malagent [Microsoft]1

FakeAlert-AB.dldr [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
Ukraine8
Russian Federation3
Germany2

FakeAlert-AB.dldr [McAfee] is known to be created as:
%ProgramFiles%\antispywarexp2009\uninstall.exe
%ProgramFiles%\getmodule\getmodule30.exe
%ProgramFiles%\getmodule\getmodule33.exe
%ProgramFiles%\microsoft common\wuauclt.exe
%ProgramFiles%\rhc75dj0erc1\rhc75dj0erc1.exe
%System%\frmwrk32.exe
%System%\ieupdates.exe
%System%\lphc35dj0erc1.exe
%System%\mscdexntx.exe
%System%\rs32net.exe
%Temp%\loader.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).