Threat Search: 

ThreatExpert's Statistics for Backdoor.Win32.Gaertob [Ikarus]:

Backdoor.Win32.Gaertob [Ikarus] is also known as:
Threat AliasNumber of Incidents
Backdoor.Trojan [Symantec]8
Trojan.Win32.Agent.cnhi [Kaspersky Lab]7
Backdoor-DWV [McAfee]6
TrojanSpy:Win32/Agent.FGI [Microsoft]5
Win-Trojan/Poison.622592.B [AhnLab]5
Backdoor-DWV.a [McAfee]4
Mal/Generic-A [Sophos]4
Troj/Drop-DE [Sophos]4
Win-Trojan/Bifrose.59261 [AhnLab]2
Backdoor.Trojan [PC Tools]1
Backdoor:Win32/Gaertob.A.dam#4 [Microsoft]1
Infostealer.Banker.C [Symantec]1
Trojan-Spy.Win32.Zbot.wsu [Kaspersky Lab]1
VirTool:Win32/Injector.D [Microsoft]1
Win32/IRCBot.worm.variant [AhnLab]1
Win-Trojan/Poison.61821 [AhnLab]1

Backdoor.Win32.Gaertob [Ikarus] is known to be created as:
%ProgramFiles%\bifrost\server.exe
%Temp%\proexa1.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).