Threat Search: 

ThreatExpert's Statistics for FakeAlert-AG [McAfee]:

FakeAlert-AG [McAfee] is also known as:
Threat AliasNumber of Incidents
Troj/FakeAle-FK [Sophos]33,499
Application.BluSOD [PC Tools]30,465
TrojanDownloader:Win32/Renos [Microsoft]26,829
Joke.Blusod [Symantec]17,792
Trojan.Blusod [Symantec]12,095
Generic PUP.d [McAfee]8,479
Trojan.Fakealert.AAI [Ikarus]5,143
Mal/EncPk-CZ [Sophos]1,955
Packed.Generic.183 [Symantec]695
Win-Trojan/Fakeav.118784 [AhnLab]556
TROJ_RENOS.ZQ [Trend Micro]117
Trojan.FakeAlert [PC Tools]54
RogueAntiSpyware.AntivirusXP2008 [PC Tools]40
Downloader.MisleadApp [Symantec]36
FakeAlert-AQ [McAfee]36
MalwareProtector2008 [Symantec]36
not-a-virus:FraudTool.Win32.MalwareProtector.d [Kaspersky Lab]36
Troj/FakeAV-AQ [Sophos]36
Trojan:Win32/Renos.BAH [Microsoft]36
Mal/HckPk-A [Sophos]27
Downloader-ASH.gen.b [McAfee]22
Trojan:Win32/Tibs.J [Microsoft]22
Trojan Horse [Symantec]18
Trojan.Peed [Ikarus]6
Trojan.Desktophijack [Symantec]5
AntiVirus2008 [Symantec]4
not-a-virus:FraudTool.Win32.AntivirusXP2008.q [Kaspersky Lab]4
Troj/FakeAV-BS [Sophos]4
TROJ_FAKEALER.HW [Trend Micro]4
TROJ_FAKEAV.ED [Trend Micro]4
Trojan.Win32.Agent.zeb [Kaspersky Lab]4
TrojanDownloader:Win32/Renos.gen!AT [Microsoft]4
Packed.Generic.57 [Symantec]3
Trojan.Desktophijack!sd6 [PC Tools]3
Trojan-Downloader.MisleadApp!sd6 [PC Tools]3
TrojanDownloader:Win32/Renos.gen!AS [Microsoft]3
Backdoor.Win32.Rukap.f [Ikarus]2
Downloader [Symantec]2
Mal/TibsPk-F [Sophos]2
Possible_Nucrp-5 [Trend Micro]2
TROJ_Generic.A [Trend Micro]2
Trojan.Fakealert.AAM [Ikarus]2
Trojan-Downloader.Win32.Renos.AQ [Ikarus]2
Virus:Win32/Grum.E [Microsoft]2
Mal/Dorf-C [Sophos]1
Mal/Pushdo-A [Sophos]1
not-a-virus:FraudTool.Win32.XPAntivirus.qu [Kaspersky Lab]1
Packed.Generic.182 [Symantec]1
Troj/Alpha-G [Sophos]1
Troj/FakeAle-GK [Sophos]1
Troj/FakeVir-EW [Sophos]1
TROJ_AGENT.AMFX [Trend Micro]1
TROJ_AGENT.AQTZ [Trend Micro]1
TROJ_AGENT.GVQ [Trend Micro]1
TROJ_AGENT.WND [Trend Micro]1
TROJ_FAKEALER.BE [Trend Micro]1
TROJ_FAKEALER.DB [Trend Micro]1
TROJ_FAKEALER.FO [Trend Micro]1
TROJ_FAKEVIR.CS [Trend Micro]1
TROJ_SMALL.JQP [Trend Micro]1
TROJ_SMALL.MAB [Trend Micro]1
TROJ_TIBS.AQZ [Trend Micro]1
TROJ_TIBS.ARQ [Trend Micro]1
TROJ_TIBS.BAG [Trend Micro]1
TROJ_TIBS.BVP [Trend Micro]1
TROJ_TIBS.BVZ [Trend Micro]1
TROJ_TIBS.QM [Trend Micro]1
TROJ_TIBS.WZ [Trend Micro]1
Trojan.Agent [PC Tools]1
Trojan.Blusod!sd6 [PC Tools]1
Trojan.Fakeavalert!sd6 [PC Tools]1
Trojan.Inject [PC Tools]1
Trojan.Pakes!ct [PC Tools]1
Trojan.Vundo [Ikarus]1
Trojan.Vundo [Symantec]1
Trojan.Win32.Agent.yyf [Kaspersky Lab]1
Trojan.Win32.Inject.jbe [Kaspersky Lab]1
Trojan.Win32.Pakes.jli [Kaspersky Lab]1
Trojan:Win32/Antivirusxp [Microsoft]1
Trojan:Win32/Busky.EH [Microsoft]1
Trojan:Win32/Tibs.GF [Microsoft]1
Trojan:Win32/Tibs.GK [Microsoft]1
Trojan-Downloader.Agent!sd6 [PC Tools]1
Trojan-Downloader.Win32.Agent.aayr [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.ynp [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.aaxs [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.aaxt [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.abhr [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.abrs [Kaspersky Lab]1
TrojanDownloader:Win32/Renos.gen!AU [Microsoft]1
TrojanDownloader:Win32/Renos.gen!AW [Microsoft]1
Trojan-Dropper.Kobcka [Ikarus]1
Trojan-Dropper.Win32.Delf [Ikarus]1
Trojan-Dropper.Win32.Delf.bwe [Kaspersky Lab]1
TrojanDropper:Win32/Cutwail.AL [Microsoft]1
TrojanDropper:Win32/Umrena.B [Microsoft]1
Win-Trojan/Pakes.109056.F [AhnLab]1
XPAntivirus [Symantec]1

FakeAlert-AG [McAfee] is known to be created as:
%CommonAppData%\fyhilcnk\nevedqfm.exe
%ProgramFiles%\rhc75dj0erc1\rhc75dj0erc1.exe
%System%\blphc35dj0erc1.scr
%System%\lphc35dj0erc1.exe
%System%\rs32net.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).