Threat Search: 

ThreatExpert's Statistics for FakeAlert-JU [McAfee]:

FakeAlert-JU [McAfee] is also known as:
Threat AliasNumber of Incidents
Packed.Win32.TDSS.aa [Kaspersky Lab]126
Mal/FakeAV-BP [Sophos]122
Trojan.Vundo [Symantec]118
Worm:Win32/Vundo.B [Microsoft]61
Trojan.Vundo [PC Tools]56
Trojan:Win32/FakeSpyguard [Microsoft]24
Packed.Generic.254 [Symantec]7
Suspicious.MH690 [Symantec]4
Troj/Virtum-Gen [Sophos]3
Mal/FakeAV-BP, Mal/EncPk-MQ, Mal/TDSSPack-Q [Sophos]2
Mal/Krap-D, Mal/FakeAV-BP, Troj/Virtum-Gen [Sophos]2
Packed.Win32.Tdss [Ikarus]2
Application.Maybe_RogueAV [PC Tools]1
Downloader.MisleadApp [PC Tools]1
Downloader.MisleadApp [Symantec]1
HeurEngine.MaliciousPacker [PC Tools]1
Mal/FakeAV-BP, Mal/EncPk-MQ [Sophos]1
Mal/Krap-D, Mal/FakeAV-BP [Sophos]1
Trojan.FakeAlert [PC Tools]1
Trojan.Win32.FakeSpyguard [Ikarus]1
Trojan.Win32.Pakes.nse [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.bqxc [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.fyg [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wwlg [Kaspersky Lab]1
TrojanDownloader:Win32/FakeSmoke [Microsoft]1
Win-Trojan/BypassAgent.52736.DS [AhnLab]1
Win-Trojan/BypassAgent.52736.DT [AhnLab]1

FakeAlert-JU [McAfee] has the following possible country of origin:
OriginNumber of Incidents
Russian Federation2

FakeAlert-JU [McAfee] is known to be created as:
%ProgramFiles%\smart protector\smrtprt.exe
%ProgramFiles%\smart protector\uninstalls.exe
%System%\babijuga.dll
%System%\berateno.dll
%System%\bohotute.dll
%System%\busivapo.dll
%System%\difahime.dll
%System%\domeroha.dll
%System%\dunuwopo.dll
%System%\galaduja.dll
%System%\hagatogo.dll
%System%\hemafovi.dll
%System%\hivotugu.dll
%System%\hubozupi.dll
%System%\kobitaka.dll
%System%\kohirovu.dll
%System%\ladakaku.dll
%System%\lepetiwa.dll
%System%\moyajamu.dll
%System%\mujipeyo.dll
%System%\nanemefu.dll
%System%\nasikunu.dll
%System%\rahohipa.dll
%System%\sajudiwa.dll
%System%\tidahahi.dll
%System%\vusuputu.dll
%System%\winsc.exe
%System%\wusorevo.dll
%System%\yibuvido.dll
%System%\zavuzogo.dll
%System%\zozelemu.dll
%System%\zuyahoba.dll
%System%\zuzisoge.dll
%Temp%\imoliv.exe
%Temp%\sysnet.dll
%Temp%\x66666666666.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).