Fake

What is “FakeAlert.96”?

Malware Removal

The FakeAlert.96 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What FakeAlert.96 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine FakeAlert.96?


File Info:

name: E02A8874327AD4365FC2.mlw
path: /opt/CAPEv2/storage/binaries/48fd3d98b247a12f7bf6e2b41911f4c9ffccb8c42820b5c2422468e8cc01878a
crc32: AA63342B
md5: e02a8874327ad4365fc27b914c6c5967
sha1: 272aab6aba70bb6c912a48274e15767cd418b99a
sha256: 48fd3d98b247a12f7bf6e2b41911f4c9ffccb8c42820b5c2422468e8cc01878a
sha512: 4630470f991a5de56f237b618e451807cfd764690865b9c90e3f3e55e5b475b81ef58af6d9da79dde02d664fb276cc137b057bbeaf952320cc0b947fbac3d536
ssdeep: 12288:phiIZm5tkFnRW32C82vvnn6IpZpzYL3hK:mI+tk1w99vnn7pfzW3h
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DB94F01311C6DE75E5893AF622654A9A02483D2A6A3105274B783D4FBA345EFCF78FCC
sha3_384: a433c8affa63a47695f5353c6915f72100c16ff0bba0baeef22a9c0a49ae4377286059342354609f3833f3c11346af6b
ep_bytes: 6a606838814100e871130000bf940000
timestamp: 2012-04-28 10:21:12

Version Info:

0: [No Data]

FakeAlert.96 also known as:

LionicTrojan.Win32.Agent.Y!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.FakeAlert.96
FireEyeGeneric.mg.e02a8874327ad436
ALYacGen:Variant.FakeAlert.96
MalwarebytesCrypt.Trojan.Malicious.DDS
VIPREGen:Variant.FakeAlert.96
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/FakeAV.3b2af086
K7GWTrojan ( 005a0f071 )
K7AntiVirusTrojan ( 005a0f071 )
CyrenW32/FakeAlert.TW.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.HTAY
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Fakeav-89069
KasperskyHEUR:Trojan.Win32.FakeAV.gen
BitDefenderGen:Variant.FakeAlert.96
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.10be4490
SophosMal/Generic-S
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen.65111
ZillyaTrojan.Agent.Win32.3283518
McAfee-GW-EditionBehavesLike.Win32.FakeAVSecurityTool.gc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.FakeAlert.96 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.FakeAlert.96
JiangminTrojan.Fakeav.diq
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Kryptik
ArcabitTrojan.FakeAlert.96
ZoneAlarmHEUR:Trojan.Win32.FakeAV.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R562581
McAfeeGenericRXVQ-QH!E02A8874327A
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/Resdec.c
TrendMicro-HouseCallTROJ_KRYPTIK.SM17
RisingRansom.Blocker!8.12A (TFE:1:AYyACo61fAC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Wacatac.B!tr
BitDefenderThetaGen:NN.ZexaF.36132.AuW@a0SEEufi
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove FakeAlert.96?

FakeAlert.96 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment