Home Malware Programs Trojans Mal/FakeXPA-A

Mal/FakeXPA-A

Posted: December 31, 2009

Threat Metric

Threat Level: 9/10
Infected PCs: 1,963
First Seen: July 24, 2009
Last Seen: April 15, 2020
OS(es) Affected: Windows

Mal/FakeXPA-A is a malicious Trojan program promoting the rogue anti-spyware application Personal Security. Mal/FakeXPA-A will bombard the system with fake scan results before trying to sell the user Personal Security to remove so-called threats. Do not fall for this trickery and have Mal/FakeXPA-A removed from the system immediately.

Aliases

Adware/SystemSecurity2009 [Panda]W32/FakeAv.YM!tr [Fortinet]Win32/GreenAV.A [eTrust-Vet]Troj/FakeAv-YM [Sophos]Trojan.FakeXPA.A.550 [McAfee-GW-Edition]TROJ_FAKEAV.BOM [TrendMicro]TR/FakeXPA.A.550 [AntiVir]Rogue:W32/XPAntivirus.GQN [F-Secure]Trojan.Fakeavalert [Symantec]Win32/Adware.Agent.NLE [NOD32]Generic FakeAlert.c [McAfee+Artemis]Generic18.WCL [AVG]Gen.Trojan [Ikarus]Malware/Win32.Generic [AhnLab-V3]TR/Spy.228864.15 [AntiVir]
More aliases (650)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 349.69 KB (349696 bytes)
MD5: 082022141b8e3ac3be17618794fac85b
Detection count: 105
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\Desktop\setup_2022_b8.exe File name: setup_2022_b8.exe
Size: 235 KB (235008 bytes)
MD5: 783890aeba4af4da94c3301f111b5f33
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\System32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 356.86 KB (356864 bytes)
MD5: aac1ea9913ef4ec108fa6dc2eab56848
Detection count: 84
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: December 9, 2010
J:\MalvRem_257.exe File name: MalvRem_257.exe
Size: 233.98 KB (233984 bytes)
MD5: d1839da6ecaf024b21960b65a3071ed7
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: J:
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\My Documents\Stephen\new 11\AGTwin_2005-19_b5.exe File name: AGTwin_2005-19_b5.exe
Size: 268.8 KB (268800 bytes)
MD5: 5b934bfc6f714bdafacb620fcaee8619
Detection count: 68
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents\Stephen\new 11
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\My Documents\InstallAVv_77023206.exe File name: InstallAVv_77023206.exe
Size: 92.16 KB (92160 bytes)
MD5: 659cd431388aed6024aa665a0f9a1e5d
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\system32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 399.36 KB (399360 bytes)
MD5: 02e8878acf7857946c1d1437cd093994
Detection count: 35
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\SYSTEM32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 351.74 KB (351744 bytes)
MD5: bf44628733c4958b38df2aabaebf83cb
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SYSTEM32
Group: Malware file
Last Updated: December 9, 2010
%TEMP%\UpdateCheck.dll File name: UpdateCheck.dll
Size: 372.73 KB (372736 bytes)
MD5: d8f5282342cc629dba6957f42d67455d
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%ALLUSERSPROFILE%\Application Data\eca\west.exe File name: west.exe
Size: 862.92 KB (862926 bytes)
MD5: 9ef6bbe676fce73e71cdcc20e2bbb791
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data\eca
Group: Malware file
Last Updated: January 27, 2011
%TEMP%\MicrosoftExtensions.dll File name: MicrosoftExtensions.dll
Size: 356.86 KB (356864 bytes)
MD5: d29479d6d646996fa44e44789ab030b7
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 358.91 KB (358912 bytes)
MD5: 41f234ae05be0941987e049beea754a9
Detection count: 19
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\My Documents\My Downloads\Alpha-Scan-32a1_2024-5.exe File name: Alpha-Scan-32a1_2024-5.exe
Size: 172.03 KB (172032 bytes)
MD5: f6c646da9662c3d8bcaa916ade3f461a
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents\My Downloads
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\System32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 335.36 KB (335360 bytes)
MD5: d4314908271ece8109e2a4ee7bcf1273
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\UpdateExplorer.dll File name: UpdateExplorer.dll
Size: 392.7 KB (392704 bytes)
MD5: 6cb2d6f04ec862e98746f14efc79f2f6
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\My Documents\Vir7remover_2014-1_b8.exe File name: Vir7remover_2014-1_b8.exe
Size: 200.19 KB (200192 bytes)
MD5: 6eb005eb40a9a8c6b6cc9a203bf9d01d
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\My Documents\setup_2005-19_b5.exe File name: setup_2005-19_b5.exe
Size: 220.16 KB (220160 bytes)
MD5: 0cf050370025eaf107851966c40fc6e4
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\Desktop\Antivirus-29a_2024-2.exe File name: Antivirus-29a_2024-2.exe
Size: 176.12 KB (176128 bytes)
MD5: c75cfc317b2b5b29d14a12e10eb66062
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\My Documents\Setup_40s8.exe File name: Setup_40s8.exe
Size: 201.21 KB (201216 bytes)
MD5: bed56eb9957cb4e9eb635f44bb7dc3b1
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: December 28, 2010
%ALLUSERSPROFILE%\Application Data\gav\QWProtect.dll File name: QWProtect.dll
Size: 128.51 KB (128512 bytes)
MD5: 8ab7ecbd8c7a9824f8461463ec95aea3
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\Application Data\gav
Group: Malware file
Last Updated: February 13, 2012
%PROGRAMFILES%\AV7.0\antivirus7.exe File name: antivirus7.exe
Size: 1.85 MB (1854976 bytes)
MD5: 1e6cca2820ad59c3787c9133b3240e11
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\AV7.0
Group: Malware file
Last Updated: December 7, 2010

More files
Loading...