Fake

FakeAlert.17 removal

Malware Removal

The FakeAlert.17 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What FakeAlert.17 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Norwegian (Nynorsk)
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine FakeAlert.17?


File Info:

crc32: 10FAA36F
md5: d3350a726783c666630a9734b366fd31
name: D3350A726783C666630A9734B366FD31.mlw
sha1: 027153ecf313a8ed6cb11a7740368d925ac5e3d1
sha256: d018eae98950ef656e822fd355359d128a82a484cea3a110a3f312cee5ad4cfc
sha512: 6bd58fa982f74d3375c94bb42b65e964be5c285002967a066d82934a09ae1ebe338c3d41e0c3a6b6619ce6c31b6d1bfeb0075cfc7686fe3db94142864384a1fc
ssdeep: 768:SGdAYlZ7q0LV0rBurB11BfkXojQk1SXOQCel/WeEfJNUcoRXd2:SiAYXZ4uNftkfymOQV/yxm5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

FakeAlert.17 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Fakealert.16383
CynetMalicious (score: 100)
ALYacGen:Variant.FakeAlert.17
CylanceUnsafe
ZillyaTrojan.FakeAV.Win32.308898
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Bulta.4092ff26
Cybereasonmalicious.26783c
CyrenW32/Risk.CGFJ-8340
SymantecWindowsAntivirusPro
ESET-NOD32Win32/Adware.PCProtector.A
APEXMalicious
AvastFileRepMetagen [Malware]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.FakeAlert.17
NANO-AntivirusTrojan.Win32.Fakealert.cnwbvx
MicroWorld-eScanGen:Variant.FakeAlert.17
TencentWin32.Trojan-spy.Zbot.Woph
Ad-AwareGen:Variant.FakeAlert.17
SophosMal/Generic-R + Mal/EncPk-RP
ComodoMalware@#1eqw1ebr79hv3
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_FakeAL-10
McAfee-GW-EditionBehavesLike.Win32.Generic.ph
FireEyeGeneric.mg.d3350a726783c666
EmsisoftGen:Variant.FakeAlert.17 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.aucj
WebrootW32.Rogue.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.26735CE
MicrosoftRansom:MSIL/HiddenTear.TH!MTB
GDataGen:Variant.FakeAlert.17
Acronissuspicious
McAfeeArtemis!D3350A726783
MAXmalware (ai score=83)
VBA32Trojan.ExpProc.014
PandaGeneric Malware
TrendMicro-HouseCallMal_FakeAL-10
RisingTrojan.Generic@ML.84 (RDML:LoarFNO3OWWliOCMSCNNhg)
YandexAdware.PCProtector!2RklRlJEr9Y
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Zbot.NT!tr
AVGFileRepMetagen [Malware]
Paloaltogeneric.ml

How to remove FakeAlert.17?

FakeAlert.17 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment