Threat Search: 

ThreatExpert's Statistics for Backdoor.Agent [PC Tools]:

Backdoor.Agent [PC Tools] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]96
Backdoor.Haxdoor [Symantec]50
Backdoor.Win32.Agent.aiu [Kaspersky Lab]49
PWS-JI.sys [McAfee]49
Trojan-Downloader.Win32.Agent.akh [Kaspersky Lab]32
Backdoor.Trojan [Symantec]25
Generic Downloader.k [McAfee]22
MultiDropper.cfg [McAfee]20
Troj/Yabinder-A [Sophos]20
Downloader [Symantec]17
Generic Downloader.ab [McAfee]17
Generic Downloader.u [McAfee]17
Adware.PigSearch [Symantec]16
TROJ_DLOADER.AUU [Trend Micro]16
TROJ_DLOADER.DPH [Trend Micro]16
TROJ_DROPPER.UN [Trend Micro]16
TROJ_YABINDER.A [Trend Micro]16
Trojan-Downloader.Win32.Agent.are [Kaspersky Lab]16
Trojan-Dropper.Win32.Yabinder.20 [Kaspersky Lab]16
TrojanDropper:Win32/Yabinder.2_0 [Microsoft]16
W32.Slackor.dr [Symantec]16
Win-Trojan/Yabinder.224768 [AhnLab]16
Trojan.Win32.Agent.oc [Kaspersky Lab]13
BackDoor-DIR [McAfee]12
Generic.dx [McAfee]12
Trojan.Win32.Agent.ut [Kaspersky Lab]12
Backdoor.Win32.Agent.xf [Kaspersky Lab]10
Generic.dj [McAfee]10
Generic.ds [McAfee]10
Infostealer [Symantec]9
Mal/Generic-A [Sophos]9
TROJ_AGENT.HZB [Trend Micro]9
Trojan.Win32.Agent [Ikarus]9
Trojan.Win32.Agent.tk [Kaspersky Lab]9
Trojan-Proxy.Win32.Agent.kj [Kaspersky Lab]9
Hacktool.Rootkit [Symantec]8
Downloader.Trojan [Symantec]7
Trojan-Dropper.Agent [Ikarus]7
Backdoor:Win32/Agent [Microsoft]5
Hacktool [Symantec]5
Trojan-Downloader.Win32.Agent.anu [Kaspersky Lab]5
Trojan-Downloader.Win32.Small [Ikarus]5
Backdoor.Win32.HacDef.073.B [Ikarus]4
Backdoor:Win32/Small.D [Microsoft]4
Generic BackDoor.ah [McAfee]4
Generic.di [McAfee]4
Mal/Behav-214, Mal/Emogen-S [Sophos]4
PWS-Gamania.dr [McAfee]4
PWS-JH [McAfee]4
Rootkit.Win32.Agent.bk [Kaspersky Lab]4
Rootkit.Win32.Agent.X [Ikarus]4
Rootkit.Win32.Agent.x [Kaspersky Lab]4
Troj/IRCBot-ADF [Sophos]4
Troj/RKFu-B [Sophos]4
TROJ_AGENT.CYU [Trend Micro]4
TROJ_AGENT.DAO [Trend Micro]4
TROJ_AGENT.EXK [Trend Micro]4
TROJ_SPAMBOT.AS [Trend Micro]4
TROJ_YAB.201 [Trend Micro]4
Trojan.Adclicker [Symantec]4
Trojan.Dropper [Symantec]4
Trojan-Downloader.Win32.Agent.aqr [Kaspersky Lab]4
Trojan-Dropper.Win32.Yabinder.201 [Kaspersky Lab]4
TrojanDropper:Win32/Yabinder.2_01 [Microsoft]4
Trojan-Spy.Win32.Agent.ji [Kaspersky Lab]4
VirTool:Win32/Agent.X [Microsoft]4
W32/Loosky.gen [McAfee]4
Win-Trojan/Agent.32768.AR [AhnLab]4
WORM_LOCKSKY.AV [Trend Micro]4
Backdoor.Win32.Agent.ad [Kaspersky Lab]3
Backdoor.Win32.Agent.sw [Kaspersky Lab]3
Backdoor.Win32.Agent.tgi [Kaspersky Lab]3
Backdoor.Win32.HacDef.fh [Ikarus]3
Backdoor.Win32.Small.gpl [Kaspersky Lab]3
Generic AdClicker.d [McAfee]3
Generic BackDoor [McAfee]3
Mal/QLowZ-A [Sophos]3
Packed.Generic.128 [Symantec]3
Spy-Agent.df [McAfee]3
Spyware-Ssppyy [McAfee]3
TROJ_AGENT.AD [Trend Micro]3
Trojan:Win32/Delf.DZ [Microsoft]3
TrojanDownloader:Win32/Small [Microsoft]3
Trojan-Proxy.Win32.Agent.hd [Kaspersky Lab]3
Virus.Win32.Banload [Ikarus]3
Win-Trojan/Agent.23040.GQ [AhnLab]3
Win-Trojan/Agent.516439 [AhnLab]3
AntiVirusXP2008 [Symantec]2
Backdoor.Bifrose [Symantec]2
Backdoor.Win32.Agent.qud [Kaspersky Lab]2
BackDoor-DNM [McAfee]2
Dropper/Agent.252416 [AhnLab]2
Generic Downloader.x [McAfee]2
Generic Downloader.z [McAfee]2
Generic.dn [McAfee]2
Generic.dv [McAfee]2
Generic.dy [McAfee]2
Infostealer.Lineage [Symantec]2
Mal/Behav-024, Mal/Emogen-U, Mal/Behav-053 [Sophos]2
Mal/EncPk-CZ [Sophos]2

Backdoor.Agent [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
United Kingdom9
China7
Russian Federation7
Germany2
Israel2
Sweden2
Iran1
Netherlands1
Portugal1

Backdoor.Agent [PC Tools] is known to be created as:
%ProgramFiles%\common files\java\xcpy1.exe
%ProgramFiles%\internet explorer\loaddriver.exe
%ProgramFiles%\license_manager\license_manager.exe
%ProgramFiles%\speederxp\register.exe
%ProgramFiles%\ultraiso\patch.exe
%ProgramFiles%\weather report\backup.exe
%ProgramFiles%\weather report\iexplorer.exe
%ProgramFiles%\windows media player\iexplorer.exe
%Programs%\startup\systemnt.exe
%System%\832333.dll
%System%\ccevtsvc.exe
%System%\cefalo.exe
%System%\chk_disk.exe
%System%\clrprv.oo\dpserver2.dll
%System%\clrprv.oo\server.exe
%System%\clrprv.oo\serverd.exe
%System%\cnscheck001.dll
%System%\comdlg64.dll
%System%\commserv.exe
%System%\drivers\nmprt.sys
%System%\drivers\rundll32.exe
%System%\drivers\slxpfald.sys
%System%\drivers\vissv.sys
%System%\duel_v2.exe
%System%\fldaevxbe.exe
%System%\hook.dll
%System%\hsystem.dll
%System%\iexplorer.exe
%System%\imbs.exe
%System%\kernel32.sys
%System%\kueilei8.3322.org.dll
%System%\lmrtend.dll
%System%\logincmd.exe
%System%\lvet.exe
%System%\mfc48.dll
%System%\mslogon.exe
%System%\mssocks.exe
%System%\nbs.exe
%System%\ntec32.exe
%System%\perferer.dll
%System%\printdrv.exe
%System%\realplayer.exe
%System%\redist.dll
%System%\regscan.exe
%System%\rs32net.exe
%System%\saga.sys
%System%\server.dll
%System%\soundmsg.exe
%System%\souwoutounor.exe
%System%\startkey.exe
%System%\svchoster.exe
%System%\tesit.exe
%System%\tilecomnu.com
%System%\uqqbus.dll
%System%\uqqbus.exe
%System%\web.exe
%System%\win.exe
%System%\winclean.exe
%System%\winlogin.exe
%System%\wldll.dll
%System%\yab.exe
%System%\zrjb3.dll
%Temp%\arcac.exe
%Temp%\breakout\breakout-mz.exe
%Temp%\breakout-mozilla-firefox.exe
%Temp%\breakout-wp.exe
%Temp%\ehuupdate.exe
%Temp%\idd1.tmp.exe
%Temp%\ixp000.tmp\hidden.exe
%Temp%\key.exe
%Temp%\nme.exe
%Temp%\rarsfx0\anti-msopa.exe
%Temp%\rarsfx0\ehuupdate.exe
%Temp%\rarsfx0\xboxcenter.dll
%Temp%\unia.tmp.exe
%Temp%\windows200_3\198994014.exe
%Temp%\yab.exe
%Windir%\fxsteller.exe
%Windir%\java\classes\java.dll
%Windir%\libhide.dll
%Windir%\mcvswin.exe
%Windir%\mwin.dll
%Windir%\osa9.exe
%Windir%\recycled.exe
%Windir%\shapi32.dll
%Windir%\system.exe
%Windir%\system\10320.exe
%Windir%\system\regserv.dll
%Windir%\updatec.exe
%Windir%\vbfile.exe
%Windir%\vmmlog32.dll
%Windir%\winlogon.exe
%Windir%\xboxcenter.dll
c:\dwnsetup\102374.exe
c:\dwnsetup\1037live.exe
c:\dwnsetup\minigou.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.