Threat Search: 

ThreatExpert's Statistics for Backdoor:Win32/Turkojan.AI [Microsoft]:

Backdoor:Win32/Turkojan.AI [Microsoft] is also known as:
Threat AliasNumber of Incidents
BackDoor-CZP.dr [McAfee]87
Backdoor.Trojan [Symantec]62
Backdoor.Win32.Turkojan.il [Kaspersky Lab]52
Win-Trojan/Turkojan.276992 [AhnLab]52
Backdoor.Turkojan.I [PC Tools]36
Downloader.Delphi [Ikarus]36
Troj/Agent-GMF [Sophos]31
Win-Trojan/Turkojan.307712 [AhnLab]31
Mal/Generic-E, Mal/Behav-333 [Sophos]30
Backdoor.Win32.Turkojan.r [Kaspersky Lab]29
W32.IRCBot.Gen [Symantec]29
Mal/Turko-A, Mal/Behav-333 [Sophos]24
Trojan.IRCBot [PC Tools]14
Backdoor.Turkojan.il [PC Tools]13
Trojan-Dropper.Delf [Ikarus]12
Backdoor.Win32.Turkojan.akt [Kaspersky Lab]7
Win-Trojan/Turkojan.277504.C [AhnLab]6
Backdoor.Trojan [PC Tools]5
Trojan Horse [Symantec]5
BackDoor-CZP.dr.gen.a [McAfee]3
Packed.Win32.Black.a [Kaspersky Lab]3
Suspicious.MH690 [Symantec]3
Trojan.Generic [PC Tools]3
Backdoor.Turkojan [PC Tools]2
Backdoor-CEP.gen.ab [McAfee]2
Mal/Behav-285 [Sophos]2
Mal/Behav-333 [Sophos]2
Mal/Generic-A [Sophos]2
Mal/Generic-E [Sophos]2
New Malware.jn [McAfee]2
Virus.Win32.Turkojan [Ikarus]2
Win-Trojan/Buzus.5735789 [AhnLab]2
Backdoor.IRC.Bot [Symantec]1
Backdoor.IRCBot [Ikarus]1
Backdoor.Rbot [Ikarus]1
Backdoor.Turkojan.Gen [PC Tools]1
Backdoor.Win32.Turkojan.cpr [Kaspersky Lab]1
Backdoor.Win32.Turkojan.del [Kaspersky Lab]1
Backdoor.Win32.Turkojan.get [Kaspersky Lab]1
BackDoor-DOQ.gen.w [McAfee]1
BehavesLikeWin32.ExplorerHijack [Ikarus]1
Generic BackDoor.ba [McAfee]1
Generic Dropper.dq [McAfee]1
Generic Dropper.hv [McAfee]1
Generic.dx [McAfee]1
Generic.dx!ne [McAfee]1
Infostealer.Gampass [Symantec]1
Mal/Behav-328 [Sophos]1
Mal/Bifrose-Q [Sophos]1
Mal/Generic-A, Mal/Behav-285 [Sophos]1
Mal/HckPk-A, Mal/EncPk-GT [Sophos]1
Packed.Win32.Krap.c [Kaspersky Lab]1
Packer.Pohernah.C [Ikarus]1
Suspicious.Graybird.1 [Symantec]1
Troj/Gernid-Gen [Sophos]1
Trojan.Crypt [Ikarus]1
Trojan.Dropper [Symantec]1
Trojan.Win32.Buzus [Ikarus]1
Trojan.Win32.Buzus.arnm [Kaspersky Lab]1
Trojan.Win32.Buzus.awtk [Kaspersky Lab]1
Trojan.Win32.Buzus.azoq [Kaspersky Lab]1
Trojan.Win32.Buzus.xeu [Kaspersky Lab]1
Trojan.Win32.Genome.cvm [Kaspersky Lab]1
Trojan-Dropper.Agent [Ikarus]1
VirTool.Win32.DelfInject [Ikarus]1
W32/Sdbot.worm [McAfee]1
Win-Trojan/Agent.4608.DX [AhnLab]1
Win-Trojan/Inject.6144.G [AhnLab]1
Win-Trojan/Turkojan.122880.C [AhnLab]1
Win-Trojan/Turkojan.204800.C [AhnLab]1
WORM_SDBOT.GAV [Trend Micro]1

Backdoor:Win32/Turkojan.AI [Microsoft] has the following possible countries of origin:
OriginNumber of Incidents
Brazil1
Canada1
Portugal1

Backdoor:Win32/Turkojan.AI [Microsoft] is known to be created as:
%System%\crssxp.exe
%System%\guezzoun.scr
%Temp%\88321.exe
%Temp%\asadfg43rwaef.exe
%Temp%\decrypted.exe
%Temp%\explore.exe
%Temp%\liym.exe
%Temp%\manual.exe
%Temp%\procexp1.exe
%Temp%\server.exe
%Temp%\sis.exe
%Temp%\svhost.exe
%Temp%\yen.exe
%Windir%\alg.exe
%Windir%\ctfmon.exe
%Windir%\ergerg.exe
%Windir%\hamoode.exe
%Windir%\iexplorer.exe
%Windir%\kasper.exe
%Windir%\msnh.exe
%Windir%\msnmessenger.exe
%Windir%\msstwain32.exe
%Windir%\mstwain32.exe
%Windir%\msvcnu.exe
%Windir%\msvcnu32.exe
%Windir%\procexp.exe
%Windir%\smss.exe
%Windir%\system32x6.exe
%Windir%\winlogon.exe
%Windir%\xmss.exe
c:\0jpz.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.