Fake Trojan

Trojan.Fakealert removal

Malware Removal

The Trojan.Fakealert is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Fakealert virus can do?

  • Authenticode signature is invalid
  • CAPE detected the lsadump malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Fakealert?


File Info:

name: 9EA4A6E44601D975B7A4.mlw
path: /opt/CAPEv2/storage/binaries/0a556c187baa4a562e7f2047a2bbf551eb2f2b8d49dd9a641ebe19febe050b81
crc32: 9EFD220F
md5: 9ea4a6e44601d975b7a4128bce2ffc85
sha1: 43a9b26f3e24845940e60ed2e93c1a6ddcc08dd4
sha256: 0a556c187baa4a562e7f2047a2bbf551eb2f2b8d49dd9a641ebe19febe050b81
sha512: f4ae0192cfdbb4caf083888598b60564306b1c47ea3b1713c96af016d2bfb6b356c1394e0f753824b4f872986ca54e1d2a0958dc2de5bfdbd0605d6609ced7f9
ssdeep: 12288:C5rd+NSb2+ld++E0Zcz7FOlpJYd2881YYK+k8CM0f6dvybwA+tSOBSar+Wrge8ry:M2+TEO5aYWMXH0OBSar98ruLihI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1102539117EFF80A5D926D9348D7EA3BC59257E133AB57E4B6240F91CC931780C83A72A
sha3_384: 1fff98db944ad4a5e2ce53f9f13d9516671576f918a28b9c4fcd7c26fb5eb0ad18bb220b6d5265920048754905d0af91
ep_bytes: 558bec6aff68c8b9480068bc75450064
timestamp: 2005-04-25 22:17:42

Version Info:

Comments:
CompanyName: QueTek Consulting Corporation
FileDescription: File Scavenger
FileVersion: 3.0.1.0
InternalName: FileScav.exe
LegalCopyright: Copyrights (c) 1998-2005 QueTek Consulting Corporation. All rights reserved.
LegalTrademarks:
OriginalFilename: FileScav.exe
PrivateBuild:
ProductName: File Scavenger
ProductVersion: 3.0.1.0
SpecialBuild:
Translation: 0x0409 0x04e4

Trojan.Fakealert also known as:

McAfeeArtemis!9EA4A6E44601
ZillyaTrojan.Virlock.Win32.30785
VirITTrojan.Win32.Fakealert.BZIX
ZonerTrojan.Win32.76188
APEXMalicious
DrWebTrojan.Fakealert.34707
McAfee-GW-EditionBehavesLike.Win32.Infected.dh
JiangminTrojan/Fakeav.bkge
MicrosoftPUA:Win32/Presenoker
VBA32Trojan.Fakealert
RisingTrojan.Generic@AI.80 (RDML:q3IVF71Z2aauwjpbOFUUQw)
YandexTrojan.GenAsa!tdBFaYYk9Vo
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/FakeAlert!tr
DeepInstinctMALICIOUS

How to remove Trojan.Fakealert?

Trojan.Fakealert removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment