Threat Search: 

ThreatExpert's Statistics for FakeAlert-CK [McAfee]:

FakeAlert-CK [McAfee] is also known as:
Threat AliasNumber of Incidents
Trojan:Win32/Fakeinit [Microsoft]22
Mal/FakeAV-BT [Sophos]17
Trojan.Win32.FakeAV.bs [Kaspersky Lab]17
CoreGuardAntivirus2009 [Symantec]16
RogueAntiSpyware.CoreGuardAntivirus2009 [PC Tools]16
Packed.Generic.225 [Symantec]10
Trojan.Waledac [Ikarus]8
Mal/Generic-A [Sophos]7
Trojan Horse [Symantec]7
Trojan-Spy.Win32.Agent.arex [Kaspersky Lab]6
Win-Trojan/Xema.57602 [AhnLab]6
Gen.Trojan [Ikarus]4
Mal/UnkPack-Fam [Sophos]4
Trojan-Downloader.Win32.FraudLoad [Ikarus]4
Trojan-Downloader.Win32.FraudLoad.fay [Kaspersky Lab]4
Trojan-Downloader.Win32.Renos [Ikarus]4
TrojanDownloader:Win32/Fakeinit [Microsoft]4
Win-Trojan/Xema.variant [AhnLab]4
Backdoor:Win32/Jeakail [Microsoft]3
Downloader.MisleadApp [Symantec]3
Trojan.FakeAV!gen17 [Symantec]3
Trojan-Spy.Agent!sd6 [PC Tools]3
Adware.Lop [PC Tools]2
Mal/EncPk-HJ [Sophos]2
Mal/EncPk-JO, Mal/EncPk-HJ [Sophos]2
Mal/FakeAV-BX, Mal/TibsPk-D, Mal/TibsPk-A [Sophos]2
Packed.Win32.Krap [Ikarus]2
Packed.Win32.Krap.ah [Kaspersky Lab]2
Trojan.Crypt [Ikarus]2
Trojan.FakeAV [Symantec]2
Trojan.Fakeavalert [Symantec]2
Trojan.Win32.FraudPack.akjg [Kaspersky Lab]2
Trojan:Win32/Meredrop [Microsoft]2
AntiVirus2008 [Symantec]1
Backdoor.Win32.Zdoogu [Ikarus]1
Backdoor.Win32.Zdoogu.by [Kaspersky Lab]1
Downloader [Symantec]1
Mal/EncPk-FO, Mal/TibsPak [Sophos]1
Mal/EncPk-JO [Sophos]1
Mal/FakeAV-AF [Sophos]1
Mal/FakeAV-AF, Mal/FakeVirPk-A [Sophos]1
Mal/FakeAV-BR [Sophos]1
Mal/FakeVirPk-A [Sophos]1
not-a-virus:FraudTool.Win32.XPAntivirus.aig [Kaspersky Lab]1
RogueAntiSpyware.AdvancedAntivirus [PC Tools]1
Troj/Agent-KIS [Sophos]1
Troj/FakeAV-ARL [Sophos]1
Troj/FakeVir-OQ [Sophos]1
Troj/Mdrop-CBT [Sophos]1
Trojan.FakeAV.bs [PC Tools]1
Trojan.Fakeavalert!sd6 [PC Tools]1
Trojan.FraudPack.aamz [PC Tools]1
Trojan.Win32.FraudPack.aamz [Kaspersky Lab]1
Trojan.Win32.Vilsel [Ikarus]1
Trojan.Win32.Vilsel.qn [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.bxpp [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.cgyn [Kaspersky Lab]1
Trojan-Downloader.Win32.Fakeinit [Ikarus]1
Trojan-Downloader.Win32.FraudLoad.eiw [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.fel [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.ffm [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.fhz [Kaspersky Lab]1
Trojan-Dropper.Agent [Ikarus]1
Trojan-PSW.Win32.LdPinch.aggx [Kaspersky Lab]1
Trojan-PWS.Win32.LdPinch [Ikarus]1
TrojanSpy:Win32/Bebloh.A [Microsoft]1
Win32/IRCBot.worm.variant [AhnLab]1
Win-Trojan/Agent.104960.DB [AhnLab]1
Win-Trojan/Agent.40448.JC [AhnLab]1
Win-Trojan/Bebloh.37105 [AhnLab]1
Win-Trojan/Fakealert.29696.C [AhnLab]1
Win-Trojan/Fakeav.1019904 [AhnLab]1
Win-Trojan/Fraudload.23040.F [AhnLab]1
Win-Trojan/Fraudpack.1050624.E [AhnLab]1
Win-Trojan/Fraudpack.1050624.H [AhnLab]1
Win-Trojan/Zdoogu.23552 [AhnLab]1

FakeAlert-CK [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation15
Ukraine1

FakeAlert-CK [McAfee] is known to be created as:
%ProgramFiles%\advancedvirusremover\avr.exe
%ProgramFiles%\antivirusxp\antivirusxp.exe
%ProgramFiles%\internetsecurity2010\is2010.exe
%System%\digiwet.dll
%System%\dllcache\userinit.exe
%System%\frmwrk32.exe
%System%\winlogon86.exe
%System%\winupdate.exe
%System%\winupdate86.exe
%Temp%\freeupdater.exe
%Windir%\9129837.exe
%Windir%\loadernew.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.