Threat Search: 

ThreatExpert's Statistics for Trojan.Fakealert [Ikarus]:

Trojan.Fakealert [Ikarus] is also known as:
Threat AliasNumber of Incidents
Mal/Generic-A [Sophos]446
not-a-virus:FraudTool.Win32.WinAntiVirus.jy [Kaspersky Lab]442
Generic PUP.z!ba [McAfee]420
Win-Trojan/FakeAv.163840 [AhnLab]382
Backdoor.Win32.Frauder.lp [Kaspersky Lab]216
Backdoor.Frauder!sd6 [PC Tools]184
Generic.dx [McAfee]159
Trojan.Fakeavalert [Symantec]97
Mal/Padodor-B [Sophos]65
Generic Downloader.x [McAfee]56
Hoax.Win32.Renos.fhv [Kaspersky Lab]56
Trojan.Fakeavalert!sd6 [PC Tools]56
not-a-virus:FraudTool.Win32.AntiVirusPro.ns [Kaspersky Lab]49
TrojanDownloader:Win32/Renos [Microsoft]41
Backdoor.Win32.Frauder.lm [Kaspersky Lab]36
Backdoor.Win32.Frauder.ln [Kaspersky Lab]36
Backdoor.Win32.Frauder.lo [Kaspersky Lab]36
Backdoor.Win32.Frauder.lq [Kaspersky Lab]36
Backdoor.Win32.Frauder.lr [Kaspersky Lab]36
Backdoor.Win32.Frauder.ls [Kaspersky Lab]36
Troj/FakeAv-XL [Sophos]30
not-a-virus:FraudTool.Win32.WinAntiVirus.iv [Kaspersky Lab]28
Mal/FakeVir-G [Sophos]27
Dropper/FakeAv.2510233 [AhnLab]26
Generic FakeAlert.a [McAfee]26
Mal/FakeAV-BG [Sophos]25
Trojan:Win32/FakeScanti [Microsoft]21
Win32.SuspectCrc [Ikarus]12
WindowsAntivirusPro [Symantec]10
Trojan Horse [Symantec]9
Backdoor.Tidserv [Symantec]7
Mal/TDSS-A [Sophos]6
Trojan:Win32/Alureon.gen!J [Microsoft]6
Generic BackDoor [McAfee]5
Trojan:Win32/Bumat!rts [Microsoft]5
Win-Trojan/Xema.variant [AhnLab]5
AntiVirusPro [Symantec]4
Backdoor.Win32.Frauder.oc [Kaspersky Lab]4
FakeAlert-GA.dll [McAfee]4
not-a-virus:FraudTool.Win32.SecretService.a [Kaspersky Lab]4
not-a-virus:FraudTool.Win32.WinAntiVirus.ix [Kaspersky Lab]4
not-a-virus:FraudTool.Win32.XLGuarder.bh [Kaspersky Lab]4
Troj/BHO-NG [Sophos]4
Trojan:Win32/Tiebho.A [Microsoft]4
FakeAlert-BO [McAfee]3
Generic PUP.x [McAfee]3
Program:Win32/FakeASC [Microsoft]3
Troj/FakeAle-JO [Sophos]3
Backdoor.Win32.Frauder.nb [Kaspersky Lab]2
Rootkit.Win32.TDSS.gen [Kaspersky Lab]2
Trojan.FakeAlert [PC Tools]2
Trojan.Win32.FraudPack.qfl [Kaspersky Lab]2
VirusResponseLab [Symantec]2
AntiVirus2009 [Symantec]1
Backdoor.Win32.TDSS.bni [Kaspersky Lab]1
Downloader [Symantec]1
FakeAlert-AB.dldr [McAfee]1
FakeAlert-AG.gen.a [McAfee]1
FakeAlert-BM [McAfee]1
FakeAlert-EO [McAfee]1
FakeAlert-EQ [McAfee]1
FakeAlert-ET [McAfee]1
FakeAlert-GV [McAfee]1
Generic Dropper.bw [McAfee]1
Generic.dx!cxm [McAfee]1
Mal/EncPk-FX [Sophos]1
Mal/EncPk-HW [Sophos]1
Mal/EncPk-IF, Mal/EncPk-HH [Sophos]1
Mal/EncPk-II [Sophos]1
Mal/EncPk-JD [Sophos]1
not-a-virus:FraudTool.Win32.Delf.f [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.SpywareGuard2008.b [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.VirusProtectPro.an [Kaspersky Lab]1
Packed.Generic.187 [Symantec]1
Program:Win32/FakeWG.A [Microsoft]1
PWCrack-Winspy [McAfee]1
Rootkit.Win32.TDSS.eyj [Kaspersky Lab]1
SpywareGuard2008 [Symantec]1
Troj/FakeAle-KH [Sophos]1
Troj/FakeAV-GL [Sophos]1
Troj/FakeAV-XB [Sophos]1
Troj/TDSS-F [Sophos]1
Troj/Virtum-Gen [Sophos]1
Trojan.Win32.Agent.arbq [Kaspersky Lab]1
Trojan.Win32.Agent.cfcg [Kaspersky Lab]1
Trojan.Win32.FakeScanti [Ikarus]1
Trojan.Win32.FraudPack.aqn [Kaspersky Lab]1
Trojan.Win32.FraudPack.hyk [Kaspersky Lab]1
Trojan.Win32.Pakes.nne [Kaspersky Lab]1
Trojan:Win32/FakeSpyguard [Microsoft]1
Trojan:Win32/FakeXPA [Microsoft]1
Trojan-Clicker.Win32.Agent.hvs [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vdmt [Kaspersky Lab]1
TrojanDownloader:Win32/FakeIA.B [Microsoft]1
TrojanDownloader:Win32/Renos.GO [Microsoft]1
Trojan-Dropper.Win32.Agent.afkt [Kaspersky Lab]1
W32/Nirbot.worm.gen [McAfee]1
Win-Trojan/Agent.11176 [AhnLab]1
Win-Trojan/Fakealert.212996 [AhnLab]1
Win-Trojan/Fakealert.59392.C [AhnLab]1

Trojan.Fakealert [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation43
Ukraine19

Trojan.Fakealert [Ikarus] is known to be created as:
%ProgramFiles%\avrlabs\avrlabs.exe
%ProgramFiles%\avrlabs\avrlabswarning.dll
%ProgramFiles%\esearch.dll
%ProgramFiles%\lpvideoplugin\5378.exe
%ProgramFiles%\msvideoplugin\z218.exe
%ProgramFiles%\windows police pro\winivsetup.exe
%System%\dddesot.dll
%System%\frmwrk32.exe
%System%\iebho.dll
%System%\msxml71.dll
%Temp%\b.exe
%Temp%\svchasts.exe
%Temp%\wndutl32.dll
%Windir%\svchast.exe
%Windir%\svchasts.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.