Fake

How to remove “Mal/FakeAV-CX”?

Malware Removal

The Mal/FakeAV-CX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/FakeAV-CX virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Mal/FakeAV-CX?


File Info:

name: CF57A878BA7A0789A234.mlw
path: /opt/CAPEv2/storage/binaries/5ff7c63ff217e18074573c4c9cc295116c7685886a7a100976812ad75bfe6bbd
crc32: D8A59A84
md5: cf57a878ba7a0789a234e53643ada445
sha1: d8e8f41ac9eb2ecb68b1f20f34c6ee504c44eb08
sha256: 5ff7c63ff217e18074573c4c9cc295116c7685886a7a100976812ad75bfe6bbd
sha512: a329af562ee8366144b3ae13be28bcf8d17ce867ba2f3f119585142d1f79995b237a8c9035e180cd4c7c1c8399d256f58ef323d9c66250b461d8a6ecdb23f07d
ssdeep: 768:39tj7LdCsxL1ZbzV9z0Tbq6FsOzdA6RNyJEg6Ni3qy:3zL1/hV9z0xFxReEg6IN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T183434D037AC0C432C02296B508AAD7516B6FB92107A3578B3BD9677F5F322D19A3E35D
sha3_384: 58834e37dd98154ac37be833883a11cf0a824185cddc2551d80370e583c616123258db0c7b07321a5f18a755aa613678
ep_bytes: 8bff558bece979feffff8bff558bec81
timestamp: 1995-08-22 11:03:08

Version Info:

0: [No Data]

Mal/FakeAV-CX also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebBackDoor.Bulknet.1800
MicroWorld-eScanWin32.Virtob.Gen.12.Dam
FireEyeGeneric.mg.cf57a878ba7a0789
CAT-QuickHealW32.Virut.G
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
Cybereasonmalicious.8ba7a0
BitDefenderThetaAI:FileInfector.C2A5779617
CyrenW32/Agent.CHU.gen!Eldorado
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Agent.NPS
CynetMalicious (score: 100)
AvastWin32:TrojanX-gen [Trj]
KasperskyUDS:Trojan.Win32.Generic
BitDefenderWin32.Virtob.Gen.12.Dam
NANO-AntivirusTrojan.Win32.Zusy.fjmqyz
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
TencentTrojan.Win32.Hesv.ha
SophosMal/FakeAV-CX
F-SecureMalware.LNK/Runner.VPMQ
BaiduWin32.Worm.Agent.ie
VIPREWin32.Virtob.Gen.12.Dam
McAfee-GW-EditionBehavesLike.Win32.Agent.qm
Trapminemalicious.high.ml.score
EmsisoftWin32.Virtob.Gen.12.Dam (B)
GDataWin32.Virtob.Gen.12.Dam
JiangminTrojan.Generic.eatwn
AviraLNK/Runner.VPMQ
Antiy-AVLTrojan/Win32.Aenjaris
XcitiumTrojWare.Win32.Imwee.A@6v1jgu
ArcabitWin32.Virtob.Gen.12.Dam
ZoneAlarmUDS:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Aenjaris.CP!bit
GoogleDetected
AhnLab-V3Trojan/Win32.Fakon.R235595
Acronissuspicious
MAXmalware (ai score=85)
Cylanceunsafe
PandaTrj/CI.A
APEXMalicious
RisingWorm.FakeFolder!1.E08F (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.NPS!worm
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Mal/FakeAV-CX?

Mal/FakeAV-CX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment