Fake Trojan

Trojan.FakeAlert.CKG information

Malware Removal

The Trojan.FakeAlert.CKG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.FakeAlert.CKG virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Creates a copy of itself
  • Attempts to disable browser security warnings

How to determine Trojan.FakeAlert.CKG?


File Info:

crc32: 92BD879F
md5: efefc30345fb39d09c8e2f1510ee3c97
name: EFEFC30345FB39D09C8E2F1510EE3C97.mlw
sha1: 85f170d93e73925bf8043a8983724f2b268cade6
sha256: 1039790bd6a64b295ba82c3c1220dffdfc55e307ca6bb58b1e7464b271304c03
sha512: e02b4eca2fe93a22693d5668de33baead30f5b6c79032911e37879750cab40e0450db9631de5326c849c90b4a29e8179c27ff67b1b284882f2e1a097961ae3fe
ssdeep: 24576:DreLfzRwj50wDR/jZ65yMMM0KwjeXbdbTdnRG+RAz/fWCCx1PhqXDiQj1TAEyDr:XZ6szyDciQTAJD2C4RSqqqEJ4J4J4Ju
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.FakeAlert.CKG also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 7000000f1 )
Elasticmalicious (high confidence)
DrWebTrojan.Fakealert.20868
CynetMalicious (score: 100)
McAfeeFakeAV-PJ.gen.m
CylanceUnsafe
ZillyaTrojan.FakeAV.Win32.325851
SangforTrojan.Win32.Save.a
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.345fb3
CyrenW32/FakeAlert.ADD.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.FakeAntiSpy.AQ
APEXMalicious
AvastWin32:Delf-PDJ [Trj]
KasperskyHEUR:Trojan-Ransom.Win32.Generic
BitDefenderTrojan.FakeAlert.CKG
NANO-AntivirusTrojan.Win32.Fakealert.bxofla
MicroWorld-eScanTrojan.FakeAlert.CKG
TencentMalware.Win32.Gencirc.10c0e876
Ad-AwareTrojan.FakeAlert.CKG
SophosMal/FakeAV-CZ
BitDefenderThetaGen:NN.ZelphiF.34738.zLW@aWPRxpnk
VIPREFraudTool.Win32.CleanThis (v)
McAfee-GW-EditionBehavesLike.Win32.Infected.th
FireEyeGeneric.mg.efefc30345fb39d0
EmsisoftTrojan.FakeAlert.CKG (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Fakeav.rrc
AviraTR/FakeAV.CT.7
Antiy-AVLTrojan/Generic.ASMalwS.18613B8
MicrosoftRogue:Win32/FakePAV
ArcabitTrojan.FakeAlert.CKG
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataTrojan.FakeAlert.CKG
AhnLab-V3Trojan/Win32.Injector.C140140
VBA32Trojan.FakeAV
MAXmalware (ai score=84)
MalwarebytesMalware.AI.1721830571
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.100 (RDML:mooMQcl7P6B3AuAixnv1qw)
YandexTrojan.GenAsa!4JIYsbW81lw
IkarusTrojan.Win32.FakeAV
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AC.2B52F1!tr
AVGWin32:Delf-PDJ [Trj]
Paloaltogeneric.ml

How to remove Trojan.FakeAlert.CKG?

Trojan.FakeAlert.CKG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment