Home Malware Programs Trojans Mal/fakeAV-MQ

Mal/fakeAV-MQ

Posted: December 27, 2011

Threat Metric

Threat Level: 9/10
Infected PCs: 227
First Seen: December 27, 2011
Last Seen: July 11, 2023
OS(es) Affected: Windows

Mal/fakeAV-MQ is a malicious Trojan which pretends to be a legitimate and reliable security application. Mal/fakeAV-MQ is also related to other bogus system security programs that imitate system registry cleanup and activities aimed at removing privacy problems. Mal/fakeAV-MQ displays numerous fake pop-up ads and security alerts. Mal/fakeAV-MQ slows down the affected computer system and reduces PC performance. Use a powerful anti-malware tool to completely remove Mal/fakeAV-MQ from the infected computer system.

Aliases

Rogue [Ikarus]TR/Fake.Rean.3433 [AntiVir]Hoax.Win32.ExpProc.acfa [Kaspersky]a variant of Win32/Kryptik.PGZ [NOD32]Trj/Genetic.gen [Panda]FakeAlert.AFD [AVG]W32/VUNDO.SMIB!tr [Fortinet]Trojan/Win32.FakeAV.gen [Antiy-AVL]Win32/FraudXPSecurity.C!generic [eTrust-Vet]TR/Fakealert.AC.88 [AntiVir]Trojan.FakeAV.9225 [DrWeb]Trojan.Generic.KDV.298654 [BitDefender]Trojan.Win32.FakeAV.ebcn [Kaspersky]Win32.Kryptik.Qqx [eSafe]Win32:Renosa-J [Wrm] [Avast]
More aliases (159)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\all.exe File name: all.exe
Size: 273.92 KB (273920 bytes)
MD5: c47859ff290ec4dd50ffcca50cd2161b
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: October 15, 2012
%USERPROFILE%\Local Settings\Application Data\djn.exe File name: djn.exe
Size: 335.36 KB (335360 bytes)
MD5: b2addfe0ba382269afc4e43e955f3317
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: February 13, 2012
%USERPROFILE%\Local Settings\Application Data\ums.exe File name: ums.exe
Size: 272.38 KB (272384 bytes)
MD5: 7ce44e56639f5ce99e9f1f1f9b24b9a1
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 17, 2012
%USERPROFILE%\Local Settings\Application Data\eyv.exe File name: eyv.exe
Size: 329.21 KB (329216 bytes)
MD5: 4246f84529b9a70af294ab0fc745c21c
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 26, 2012
%USERPROFILE%\Local Settings\Application Data\agi.exe File name: agi.exe
Size: 293.88 KB (293888 bytes)
MD5: 712a6cdddf46c4b449f032317f82363c
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\vea.exe File name: vea.exe
Size: 270.84 KB (270848 bytes)
MD5: 7d76e194400102ca96963448eb341e4d
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 11, 2012
%USERPROFILE%\Local Settings\Application Data\juh.exe File name: juh.exe
Size: 272.89 KB (272896 bytes)
MD5: 44bb4bc3e81306c01cabd1ef4b88faab
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 11, 2012
%USERPROFILE%\Local Settings\Application Data\dpm.exe File name: dpm.exe
Size: 279.04 KB (279040 bytes)
MD5: abe751de00b6067638452cc2dbc5cd5a
Detection count: 46
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 13, 2012
%USERPROFILE%\Local Settings\Application Data\ort.exe File name: ort.exe
Size: 286.2 KB (286208 bytes)
MD5: be21b4cc644986b656aabf3fb47367e9
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 19, 2012
%USERPROFILE%\Local Settings\Application Data\lpy.exe File name: lpy.exe
Size: 328.19 KB (328192 bytes)
MD5: 759ab13a17c12fb56eef5583e4024016
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 19, 2012
%USERPROFILE%\Local Settings\Application Data\ucj.exe File name: ucj.exe
Size: 337.4 KB (337408 bytes)
MD5: 02ceaa516b757f56911772d8628eb9d9
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 1, 2012
%USERPROFILE%\Local Settings\Application Data\sul.exe File name: sul.exe
Size: 292.86 KB (292864 bytes)
MD5: ccdb7fa012f5d86027d47cdb9640bc23
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\avo.exe File name: avo.exe
Size: 270.84 KB (270848 bytes)
MD5: 67d39a89aef0f9b3e6bebef537bc8529
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 11, 2012
%USERPROFILE%\Local Settings\Application Data\uqt.exe File name: uqt.exe
Size: 281.6 KB (281600 bytes)
MD5: a7a51d4df9fcfe58343c4260ce1e634e
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 23, 2012
%USERPROFILE%\Local Settings\Application Data\awn.exe File name: awn.exe
Size: 279.04 KB (279040 bytes)
MD5: 1e8ba5815f16c10d7ecc82ea19f395c9
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\akx.exe File name: akx.exe
Size: 270.84 KB (270848 bytes)
MD5: 6057ca5cb483e8c78522941964aeda86
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\aqp.exe File name: aqp.exe
Size: 269.31 KB (269312 bytes)
MD5: 038413d130be91ffb7c8bc6888b958d8
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 11, 2012
%USERPROFILE%\Local Settings\Application Data\mnm.exe File name: mnm.exe
Size: 271.36 KB (271360 bytes)
MD5: 92eee836c58ead37903ecc3bf513930d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 16, 2012
%SystemDrive%\Users\<username>\Local Settings\Application Data\sin.exe File name: sin.exe
Size: 273.92 KB (273920 bytes)
MD5: da1ce186e91af35f349ce41b16f64f1f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%TEMP%\.exe File name: %TEMP%\.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
%USERPROFILE%\Local Settings\Application Data\hsg.exe File name: hsg.exe
Size: 272.38 KB (272384 bytes)
MD5: e7e6e659624801ef4bdb6d4c380b6ffb
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 11, 2012

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = '1'
Loading...