Threat Search: 

ThreatExpert's Statistics for Backdoor.Agent!sd6 [PC Tools]:

Backdoor.Agent!sd6 [PC Tools] is also known as:
Threat AliasNumber of Incidents
Trojan-Dropper.Agent [Ikarus]97
Trojan Horse [Symantec]88
Worm:Win32/Mariofev.A [Microsoft]54
W32/MarioF-B [Sophos]52
W32/Mariofev.worm [McAfee]52
Backdoor.Win32.Agent.adfc [Kaspersky Lab]42
Mal/Generic-A [Sophos]28
Generic BackDoor [McAfee]27
Win-Trojan/Agent.278528.BL [AhnLab]24
Mal/FakeVirPk-A [Sophos]18
Trojan:Win32/Tibs.IU [Microsoft]18
Backdoor.Trojan [Symantec]15
Generic Dropper [McAfee]15
W32/SillyFDC-CZ [Sophos]15
Infostealer [Symantec]13
Backdoor.Win32.Agent.afei [Kaspersky Lab]12
Backdoor.Win32.Agent.qlv [Kaspersky Lab]12
Backdoor.Win32.Agent.tyj [Kaspersky Lab]12
Mal/EncPk-CK [Sophos]12
Trojan-Downloader.Win32.Small [Ikarus]12
TrojanDownloader:Win32/Small.AABL [Microsoft]12
TrojanDropper:Win32/Srizbi.gen!D [Microsoft]12
Backdoor.Win32.Agent.afzs [Kaspersky Lab]11
AntiVirusXP2008 [Symantec]9
Cryp_Xed-3 [Trend Micro]9
Win-Trojan/Downloader.3584.LG [AhnLab]9
Backdoor.Win32.Agent.adqt [Kaspersky Lab]8
Backdoor.Bifrose [Ikarus]7
Backdoor.Win32.Agent.gjs [Kaspersky Lab]7
Mal/Packer [Sophos]7
Spyware-Ssppyy [McAfee]7
Trojan:Win32/Agent [Microsoft]7
Backdoor.Win32.Agent.adyt [Kaspersky Lab]6
Backdoor.Win32.Agent.aexl [Kaspersky Lab]6
Backdoor.Win32.Agent.vfq [Kaspersky Lab]6
Downloader-BIU.sys [McAfee]6
Generic PWS.y [McAfee]6
Hacktool.Rootkit [Symantec]6
VirTool:WinNT/Knockex.D [Microsoft]6
W32/MarioF-Gen [Sophos]6
Win-Trojan/Agent.28672.TH [AhnLab]6
Backdoor.Win32.Agent.afub [Kaspersky Lab]5
BKDR_AGENT.AASP [Trend Micro]5
HackTool.Win32.Patcher.A [Ikarus]5
Backdoor.Win32.Agent.admr [Kaspersky Lab]4
Backdoor:WinNT/Nuwar.D!sys [Microsoft]4
Gen.Trojan [Ikarus]4
Generic.dx [McAfee]4
Mal/Behav-009 [Sophos]4
Mal/Behav-024, Mal/Emogen-Y [Sophos]4
Suspicious.MH690 [Symantec]4
Trojan.Dropper [Symantec]4
Trojan:Win32/Bumat!rts [Microsoft]4
TrojanDropper:Win32/Mariofev.A [Microsoft]4
Virus.Win32.Crypt.CIR [Ikarus]4
Win-Trojan/Agent.5120.GZ [AhnLab]4
Backdoor.Win32.Agent.afxk [Kaspersky Lab]3
Backdoor.Win32.Hupigon [Ikarus]3
FakeAlert-AB [McAfee]3
Generic BackDoor!bbq [McAfee]3
Mal/Emogen-E, Mal/Packer, Mal/EncPk-E, Mal/Basine-C, Mal/Behav-160 [Sophos]3
New Malware.dw [McAfee]3
Trojan.Vundo.B [Symantec]3
Backdoor.Win32.Agent.aagp [Kaspersky Lab]2
Backdoor.Win32.Agent.rfx [Kaspersky Lab]2
Backdoor.Win32.Agent.rvn [Kaspersky Lab]2
Backdoor.Win32.Agent.txo [Kaspersky Lab]2
Backdoor.Win32.Agent.vbo [Kaspersky Lab]2
Backdoor.Win32.Agent.vgd [Kaspersky Lab]2
Backdoor.Win32.Agent.vsa [Kaspersky Lab]2
Backdoor.Win32.Agent.yyd [Kaspersky Lab]2
BackDoor-DPJ [McAfee]2
Downloader [Symantec]2
Downloader-ASH.gen.b [McAfee]2
Exploit.Win32.IMG-WMF [Ikarus]2
Troj/Virtum-Gen [Sophos]2
Trojan:Win32/Redosdru.E [Microsoft]2
Trojan-Dropper.Win32.Agent [Ikarus]2
VirTool.WinNT.Knockex [Ikarus]2
W32/Koobfa-Gen, W32/Koobfa-Gen [Sophos]2
Win32.SuspectCrc [Ikarus]2
Backdoor.Rustock [Ikarus]1
Backdoor.Win32.Agent.aclb [Kaspersky Lab]1
Backdoor.Win32.Agent.acxe [Kaspersky Lab]1
Backdoor.Win32.Agent.adfg [Kaspersky Lab]1
Backdoor.Win32.Agent.adgg [Kaspersky Lab]1
Backdoor.Win32.Agent.adql [Kaspersky Lab]1
Backdoor.Win32.Agent.aeyu [Kaspersky Lab]1
Backdoor.Win32.Agent.afbg [Kaspersky Lab]1
Backdoor.Win32.Agent.afci [Kaspersky Lab]1
Backdoor.Win32.Agent.affe [Kaspersky Lab]1
Backdoor.Win32.Agent.agnk [Kaspersky Lab]1
Backdoor.Win32.Agent.ajd [Kaspersky Lab]1
Backdoor.Win32.Agent.fjs [Kaspersky Lab]1
Backdoor.Win32.Agent.hmi [Kaspersky Lab]1
Backdoor.Win32.Agent.pnt [Kaspersky Lab]1
Backdoor.Win32.Agent.qdc [Kaspersky Lab]1
Backdoor.Win32.Agent.qed [Kaspersky Lab]1
Backdoor.Win32.Agent.qyo [Kaspersky Lab]1
Backdoor.Win32.Agent.rcw [Kaspersky Lab]1

Backdoor.Agent!sd6 [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
China9
Russian Federation5
Belgium1
Brazil1
Iran1
Portugal1
United Kingdom1

Backdoor.Agent!sd6 [PC Tools] is known to be created as:
%ProgramFiles%\microsoft common\wuauclt.exe
%ProgramFiles%\spynet.exe
%System%\3f5fa.dll
%System%\chipset.exe
%System%\cssrss.exe
%System%\digeste.dll
%System%\dllcache\userinit.exe
%System%\drivers\tdssserv.sys
%System%\killkb.dll
%System%\lphc35dj0erc1.exe
%System%\nvaux32.dll
%System%\obrji.exe
%System%\oggypof.exe
%System%\svcpos.exe
%System%\updater.exe
%System%\windows.exe
%Temp%\kafan virlist 2009.04.02\090402-5-6.exe
%Temp%\mousehook.dll
%Temp%\ntdll64.dll
%Temp%\sidebar.exe
%Temp%\znoexu.exe
%UserProfile%\giwjq.exe
%UserProfile%\ktyttqx.exe
%UserProfile%\xrt_glut.exe
%UserProfile%\xrt_kuyl.exe
%UserProfile%\xrt_nueq.exe
%UserProfile%\xrt_rxby.exe
%UserProfile%\xrt_taca.exe
%UserProfile%\xrt_tsjw.exe
%UserProfile%\xrt_txdg.exe
%UserProfile%\xrt_yuno.exe
%Windir%\java\classes\ccwinlogins.exe
%Windir%\jjjjjjrb.exe
%Windir%\pp04.exe
%Windir%\pp05.exe
%Windir%\rckjqdgj.exe
%Windir%\services.exe
%Windir%\temp\mmhtml.dll
c:\autorun.inf\rundll32.exe
c:\recycled\rundll32.exe
c:\temp2\bit\init.exe
c:\temp2\bit\yahoo.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.