Threat Search: 

ThreatExpert's Statistics for TrojanDownloader:Win32/Fakeinit [Microsoft]:

TrojanDownloader:Win32/Fakeinit [Microsoft] is also known as:
Threat AliasNumber of Incidents
Trojan.FakeAV [PC Tools]90
Trojan.FakeAV [Symantec]90
Mal/Generic-A [Sophos]57
Downloader.MisleadApp [PC Tools]38
Generic FakeAlert!dg [McAfee]37
Mal/FakeAV-BT [Sophos]37
Mal/FakeAV-BW [Sophos]37
Trojan.Win32.Vilsel.ocj [Kaspersky Lab]37
Trojan-Downloader.Win32.FraudLoad.wxvl [Kaspersky Lab]36
Trojan-Downloader.Win32.FraudLoad [Ikarus]25
Trojan-Downloader.Win32.FraudLoad.wxpn [Kaspersky Lab]25
Virus.Win32.Rootkit [Ikarus]22
Trojan Horse [Symantec]20
Downloader.MisleadApp [Symantec]18
Mal/EncPk-HJ [Sophos]17
Trojan.Win32.Monder.bdnr [Kaspersky Lab]17
Trojan.Fakeavalert [Symantec]16
Trojan.Generic [PC Tools]14
FakeAlert-FA [McAfee]13
Mal/EncPk-FO [Sophos]13
Generic PUP.z [McAfee]12
Program:Win32/Antivirus2009 [Microsoft]12
Trojan.Vundo [Symantec]12
Trojan.Win32.Agent [Ikarus]12
Troj/FakeAV-AKD [Sophos]10
Mal/TibsPak [Sophos]9
Trojan.Win32.FakeAV [Ikarus]9
FakeAlert-SpyPro.gen.b [McAfee]8
Mal/FakeAV-BX, Mal/TibsPk-D, Mal/TibsPk-A [Sophos]8
Downloader [Symantec]7
Generic FakeAlert.a [McAfee]7
BackDoor-DKI.gen.at [McAfee]6
Packed.Win32.Krap [Ikarus]6
Packed.Win32.Krap.an [Kaspersky Lab]6
Trojan-Downloader.Win32.Fakeinit [Ikarus]6
Trojan-Downloader.Win32.FraudLoad.wxvr [Kaspersky Lab]6
Downloader.Generic [PC Tools]5
Generic FakeAlert.b [McAfee]5
Mal/EncPk-HJ, Mal/EncPk-HJ [Sophos]5
Mal/FakeVirPk-A [Sophos]5
Mal/Generic-A, Mal/FakeAV-BW [Sophos]5
Troj/Agent-MEF [Sophos]5
Trojan.Win32.Small [Ikarus]5
Trojan-Downloader.Win32.FraudLoad.gcn [Kaspersky Lab]5
Trojan-Downloader.Win32.FraudLoad.wxpq [Kaspersky Lab]5
Win-Trojan/Downloader.30720.CS [AhnLab]5
BackDoor-DKI.gen.bm [McAfee]4
FakeAlert-AB.dldr [McAfee]4
FakeAlert-CK [McAfee]4
Fakealert-KS [McAfee]4
FakeAlert-XPSecCenter [McAfee]4
Mal/FakeAV-BX [Sophos]4
Packed.Generic.271 [Symantec]4
Trojan.FakeAlerter [Ikarus]4
Trojan.Fakeavalert!sd6 [PC Tools]4
Trojan.Win32.Agent.dfsv [Kaspersky Lab]4
Trojan.Win32.Vilsel [Ikarus]4
Trojan-Downloader.Win32.FraudLoad.vtuc [Kaspersky Lab]4
Win-Trojan/Malware.23552.T [AhnLab]4
Win-Trojan/Xema.variant [AhnLab]4
CoreGuardAntivirus2009 [Symantec]3
Generic FakeAlert!dl [McAfee]3
Generic FakeAlert!dw [McAfee]3
HeurEngine.MaliciousPacker [PC Tools]3
Mal/EncPk-NI, Mal/FakeAV-BW [Sophos]3
RogueAntiSpyware.CoreGuardAntivirus2009 [PC Tools]3
Troj/FakeAle-RG [Sophos]3
TROJ_FAKEAV.SMON [Trend Micro]3
Trojan.Crypt [Ikarus]3
Trojan.Win32.Agent.denr [Kaspersky Lab]3
Trojan.Win32.FraudPack.afeg [Kaspersky Lab]3
Trojan.Win32.Small.bvb [Kaspersky Lab]3
Trojan-Downloader.Win32.Agent.cwyd [Kaspersky Lab]3
Trojan-Downloader.Win32.FraudLoad.gar [Kaspersky Lab]3
Trojan-Downloader.Win32.FraudLoad.wxkn [Kaspersky Lab]3
Win-Trojan/FakeAlert.31744.C [AhnLab]3
Win-Trojan/Jlte.27136.B [AhnLab]3
Downloader-CBN [McAfee]2
Generic Downloader.x [McAfee]2
Generic FakeAlert!dc [McAfee]2
Generic FakeAlert!df [McAfee]2
Mal/EncPk-NI [Sophos]2
Mal/FakeAV-BX, Mal/EncPk-MC [Sophos]2
Mal/Generic-A, Mal/EncPk-NI, Mal/FakeAV-BW [Sophos]2
Mal/Generic-A, Mal/EncPk-NR [Sophos]2
Mal/Generic-A, Mal/FakeAV-BX [Sophos]2
Mal/TibsPk-D, Mal/TibsPk-A [Sophos]2
Packed.Win32.Krap.ah [Kaspersky Lab]2
Packed.Win32.Krap.ak [Kaspersky Lab]2
RogueAntiSpyware.AdvancedAntivirus [PC Tools]2
Troj/FakeAV-AIK [Sophos]2
Troj/Mdrop-CIG [Sophos]2
TROJ_FAKEAV.SMTX [Trend Micro]2
Trojan.FakeAlert.smdo [PC Tools]2
Trojan.FakeAV!gen9 [Symantec]2
Trojan.Win32.Agent.azpp [Kaspersky Lab]2
Trojan.Win32.Agent.dcsm [Kaspersky Lab]2
Trojan.Win32.Vilsel.nys [Kaspersky Lab]2
Trojan.Win32.Vilsel.oby [Kaspersky Lab]2
Trojan.Win32.Vilsel.pmb [Kaspersky Lab]2

TrojanDownloader:Win32/Fakeinit [Microsoft] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation47
Sweden2

TrojanDownloader:Win32/Fakeinit [Microsoft] is known to be created as:
%System%\frmwrk32.exe
%System%\smss32.exe
%System%\winlogon32.exe
%System%\winlogon86.exe
%System%\winupdate.exe
%System%\winupdate86.exe
%Temp%\0.5700645819859499.exe
%Temp%\0_11adwara.exe
%Temp%\11adwara.exe
%Temp%\bwxpxx.exe
%Temp%\files\winupdate.exe
%Temp%\flcqyo.exe
%Temp%\fnnv.exe
%Temp%\loader.exe
%Temp%\mecclq.exe
%Temp%\obrpqv.exe
%Temp%\pdvwd.exe
%Temp%\smss32_.exe
%Temp%\vgcgla.exe
%Temp%\winlogon86.exe
%Temp%\winupdate86.exe
%UserProfile%\bielixb.exe
%UserProfile%\kpsoiogefu.exe
%UserProfile%\lgokzd.exe
%UserProfile%\syaxqx.exe
%UserProfile%\ydgcwcu.exe
%UserProfile%\yfpuwle.exe
%Windir%\setup.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.