Fake

Mal/FakeInst-B information

Malware Removal

The Mal/FakeInst-B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/FakeInst-B virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Anomalous binary characteristics

How to determine Mal/FakeInst-B?


File Info:

crc32: 268ED7F3
md5: 846b6cefeae615f295051a8b97f447ad
name: 846B6CEFEAE615F295051A8B97F447AD.mlw
sha1: b053e729ccf5625f3f8ba26365d897061feeb42d
sha256: 646d56992eb0356ce70f055da0249bbdb2b99e7b3b4032d2cac05c22f9d486cb
sha512: 67c3daff7ddf84697ffa4d6589ead6dea00fab9eff5b24573c7a5070e45226f6b356500f4ea2b92e0b536d7ec3fe02b5a6beb4f1a9e04fdb763c8bc35c8b602c
ssdeep: 12288:F/XIFaVoK/ARmQyGs0CfOuoGOobo2VuDWq6xGJOpqjU5sn3HStDBaHD:pXAKV7vf+apVs0Gkpt54MQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: WinPacker
InternalName:
FileVersion: 1.3.6.383
CompanyName: WinPacker
LegalTrademarks: WinPacker
Comments:
ProductName:
ProductVersion: 1.3.6
FileDescription: WinPacker Self-Extractor
OriginalFilename:
Translation: 0x0419 0x04e3

Mal/FakeInst-B also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 7000000f1 )
Elasticmalicious (high confidence)
DrWebTool.SMSSend.33
CynetMalicious (score: 100)
ALYacGen:Heur.Zilix.7
ZillyaTrojan.FakeInstaller.Win32.151
AlibabaRansom:Win32/FakeInstaller.083c262a
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.feae61
CyrenW32/FakeInstall.F.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Hoax.ArchSMS.AR
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Trojan.Ransom-481
KasperskyTrojan-Ransom.Win32.FakeInstaller.alva
BitDefenderGen:Heur.Zilix.7
NANO-AntivirusTrojan.Win32.FakeInstaller.byyuo
SUPERAntiSpywareTrojan.Agent/Gen-Undef
MicroWorld-eScanGen:Heur.Zilix.7
Ad-AwareGen:Heur.Zilix.7
SophosMal/FakeInst-B
ComodoTrojWare.Win32.Trojan.FakeInstaller.~alva0@361v9v
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionBehavesLike.Win32.Dropper.bc
FireEyeGeneric.mg.846b6cefeae615f2
EmsisoftGen:Heur.Zilix.7 (B)
JiangminTrojan/FakeInstaller.gp
WebrootTrojan:Win32/Fakeinstaller.B
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Ninunarch.N
ArcabitTrojan.Zilix.7
GDataGen:Heur.Zilix.7
AhnLab-V3Trojan/Win32.FakeInstaller.R7804
McAfeeArtemis!846B6CEFEAE6
MAXmalware (ai score=80)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3716458537
PandaTrj/CI.A
IkarusVirus.Win32.FunLove
MaxSecureTrojan.Ransom.FakeInstaller.alva
FortinetAdware/FakeInstaller
AVGWin32:Adware-gen [Adw]

How to remove Mal/FakeInst-B?

Mal/FakeInst-B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment