Threat Search: 

ThreatExpert's Statistics for FakeAlert-CM [McAfee]:

FakeAlert-CM [McAfee] is also known as:
Threat AliasNumber of Incidents
Mal/EncPk-HL, Mal/FakeVirPk-A [Sophos]260
Trojan-Downloader.Win32.FraudLoad [Ikarus]126
Trojan:Win32/Insebro.C [Microsoft]113
Trojan.FakeAlert [PC Tools]93
Troj/FakeAV-UC [Sophos]81
Trojan-Downloader.Win32.FraudLoad.wcco [Kaspersky Lab]81
TrojanDownloader:Win32/FakeRean [Microsoft]47
Trojan:Win32/FakeRean [Microsoft]42
Win-Trojan/Fraudload.28672.AO [AhnLab]27
Trojan Horse [Symantec]22
Trojan-Downloader.Win32.FraudLoad.ehq [Kaspersky Lab]22
Trojan-Downloader.Win32.FraudLoad.eje [Kaspersky Lab]22
Win-Trojan/Fraudload.28672.M [AhnLab]22
Packed.Generic.233 [Symantec]17
Downloader.MisleadApp [Symantec]15
Mal/EncPk-IF [Sophos]14
Trojan.Win32.FakeRean [Ikarus]14
Mal/Generic-A [Sophos]13
Mal/EncPk-IV [Sophos]12
Mal/Behav-321, Mal/Behav-331, Mal/EncPk-HL, Mal/FakeVirPk-A [Sophos]11
not-a-virus:FraudTool.Win32.WinPCDefender [Ikarus]11
Trojan.Fakeavalert [Symantec]10
Trojan-Downloader.FraudLoad!sd6 [PC Tools]10
Trojan-Downloader.Win32.FraudLoad.vsge [Kaspersky Lab]10
not-a-virus:FraudTool.Win32.WinPCDefender.bj [Kaspersky Lab]9
not-a-virus:FraudTool.Win32.WinPCDefender.bm [Kaspersky Lab]9
Trojan.Crypt [Ikarus]7
Trojan-Downloader.Win32.FraudLoad.wcva [Kaspersky Lab]7
Mal/FakeAV-AD [Sophos]6
not-a-virus:FraudTool.Win32.WinPCDefender.be [Kaspersky Lab]4
not-a-virus:FraudTool.Win32.WinPCDefender.bi [Kaspersky Lab]4
Trojan-Downloader.Win32.FakeRean [Ikarus]4
Win-Trojan/Fraudload.28672.J [AhnLab]4
Mal/FakeAV-AD, Mal/EncPk-IF [Sophos]3
Trojan:Win32/Tibs.gen!lds [Microsoft]3
CoreGuardAntivirus2009 [Symantec]2
HeurEngine.MaliciousPacker [PC Tools]2
Packed.Generic.218 [Symantec]2
Suspicious.Lop [Symantec]2
Troj/FakeAV-QB [Sophos]2
Trojan-Downloader.Win32.FraudLoad.eiq [Kaspersky Lab]2
Trojan-Downloader.Win32.FraudLoad.ekn [Kaspersky Lab]2
Win-Trojan/Downloader.104963 [AhnLab]2
Win-Trojan/Fakeav.108035 [AhnLab]2
Win-Trojan/Fraudload.28672.N [AhnLab]2
Downloader [Symantec]1
Downloader.MisleadApp [PC Tools]1
Mal/Behav-321 [Sophos]1
Mal/EncPk-IF, Mal/EncPk-HH [Sophos]1
Mal/EncPk-IF, Mal/FakeAV-AD, Mal/EncPk-IV [Sophos]1
Mal/FakeAV-AD, Mal/EncPk-HH [Sophos]1
Mal/FakeAV-AD, Mal/EncPk-IF, Mal/EncPk-HH [Sophos]1
Mal/FakeAV-BX, Mal/FakeAV-BT, Mal/EncPk-IF, Mal/FakeAV-AD [Sophos]1
Mal/Generic-A, Mal/EncPk-IF [Sophos]1
Mal/UnkPack-Fam [Sophos]1
not-a-virus:FraudTool.Win32.WinPCDefender.ac [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.WinPCDefender.bb [Kaspersky Lab]1
SecurityRisk.Downldr [Symantec]1
Troj/FakeAV-SO [Sophos]1
TROJ_FAKEAV.BHI [Trend Micro]1
Trojan.Fraudtool.PCDefender [Ikarus]1
Trojan-Downloader.Win32.Agent.bvxf [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.bwno [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.cgxu [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.ejl [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.epr [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vshc [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vtqw [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vueg [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vymo [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wbqy [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wbru [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wbyo [Kaspersky Lab]1
Trojan-Dropper.Agent [Ikarus]1
Trojan-Dropper.Win32.Agent.arci [Kaspersky Lab]1
Win-Trojan/Agent.74755 [AhnLab]1
Win-Trojan/Downloader.28672.PB [AhnLab]1
Win-Trojan/Fakealert.1022976.B [AhnLab]1
Win-Trojan/Fraudload.107523.G [AhnLab]1
Win-Trojan/Fraudload.109571 [AhnLab]1
Win-Trojan/Fraudload.109571.B [AhnLab]1
Win-Trojan/Fraudload.109571.G [AhnLab]1
Win-Trojan/Fraudload.110595.B [AhnLab]1
Win-Trojan/Fraudload.28672.O [AhnLab]1
Win-Trojan/Fraudload.29184.G [AhnLab]1
Win-Trojan/Fraudload.29184.I [AhnLab]1
Win-Trojan/Fraudload.70656.AR [AhnLab]1
XPAntivirus [Symantec]1

FakeAlert-CM [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
Ukraine94
Russian Federation45

FakeAlert-CM [McAfee] is known to be created as:
%Temp%\090614-a-26.exe
%Temp%\iehostcx32.dll
%Windir%\ieocx.dll
Notes:
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.