Threat Search: 

ThreatExpert's Statistics for Gen.Trojan [Ikarus]:

Gen.Trojan [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]264
Mal/Generic-A [Sophos]218
Trojan.Win32.Pasta.dgz [Kaspersky Lab]157
Generic Downloader.x!bos [McAfee]73
Win-Trojan/Xema.variant [AhnLab]65
Trojan.Generic [PC Tools]58
Generic.dx [McAfee]52
Mal/FakeVirPk-A [Sophos]42
Mal/Dorf-F [Sophos]38
Mal/Emogen-E, Mal/Behav-160 [Sophos]37
Suspicious.MH690 [Symantec]37
Infostealer.Bancos [Symantec]33
Trojan.Win32.Agent.bykq [Kaspersky Lab]33
Generic.dx!cpp [McAfee]30
Trojan-Downloader.Win32.Agent.cmok [Kaspersky Lab]30
Win-Trojan/Downloader.103424.P [AhnLab]30
Trojan:Win32/Malat [Microsoft]26
Troj/GDog-B [Sophos]24
Win-Trojan/Pasta.133632.D [AhnLab]24
Downloader [Symantec]23
Trojan.Win32.Agent [Ikarus]21
Mal/Emogen-H, Mal/Emogen-F [Sophos]20
Mal/Behav-043 [Sophos]17
Exploit.Win32.IMG-WMF.oy [Kaspersky Lab]15
Generic PUP.x [McAfee]15
Mal/VB-F [Sophos]13
Mal/EncPk-CK [Sophos]12
Mal/FakeAV-BX, Mal/TibsPk-A [Sophos]12
Mal/UnkPack-Fam [Sophos]12
Trojan-Downloader.Win32.Agent.bdvd [Kaspersky Lab]12
Win-Trojan/OnlineGameHack.52669 [AhnLab]12
Backdoor.Trojan [Symantec]11
Infostealer [Symantec]10
Mal/TDSSPack-Q [Sophos]10
Backdoor.Graybird [Symantec]9
Downloader.Generic [PC Tools]9
Mal/EncPk-AF [Sophos]9
not-a-virus:AdWare.Win32.Agent.pgv [Kaspersky Lab]9
Packed.Generic.271 [Symantec]9
Trojan.Dropper [Symantec]9
Trojan-Downloader.Win32.FraudLoad.exm [Kaspersky Lab]9
Win-Trojan/Agent.40960.AFR [AhnLab]9
Backdoor.Graybird [PC Tools]8
Generic Downloader.x!a [McAfee]8
Mal/FakeAV-AT [Sophos]8
Packed.Win32.TDSS.aa [Kaspersky Lab]8
Troj/Virtum-Gen [Sophos]8
Trojan.Vundo [Symantec]8
Trojan:Win32/Meredrop [Microsoft]8
Trojan-Downloader.Win32.VB.lqy [Kaspersky Lab]8
TrojanDownloader:WinNT/Nupylos.A [Microsoft]8
HeurEngine.MaliciousPacker [PC Tools]7
Mal/Packer [Sophos]7
Trojan.Fakeavalert [Symantec]7
Trojan-PSW.Bancos [PC Tools]7
Vundo [McAfee]7
Downloader.MisleadApp [Symantec]6
Generic.dx!ico [McAfee]6
Mal/FakeAV-BR [Sophos]6
Mal_Banker [Trend Micro]6
Troj/FakMSA-Gen [Sophos]6
Trojan:Win32/Bumat!rts [Microsoft]6
Trojan:Win32/Opachki.A [Microsoft]6
Trojan:Win32/Tibs.IU [Microsoft]6
Trojan-Downloader.Win32.FraudLoad.ekn [Kaspersky Lab]6
Trojan-Dropper.Agent [Ikarus]6
Trojan-Dropper.Win32.Agent.bjju [Kaspersky Lab]6
VBS/Runner.8192 [AhnLab]6
Win-Trojan/MalCrypted.Gen [AhnLab]6
Adware.Gen [Symantec]5
Adware.Websearch [Symantec]5
Backdoor.Win32.Agent.admr [Kaspersky Lab]5
Backdoor:Win32/Lamin.A [Microsoft]5
Exploit.IMG-WMF!sd6 [PC Tools]5
FakeAlert-AB [McAfee]5
Generic Delphi [McAfee]5
Generic PWS.y [McAfee]5
Infostealer.Gampass [Symantec]5
IRC.Backdoor.Trojan [Symantec]5
Mal/Behav-053 [Sophos]5
Mal/Behav-109 [Sophos]5
New Malware.iu [McAfee]5
not-a-virus:Client-IRC.Win32.mIRC.603 [Kaspersky Lab]5
PWS:Win32/OnLineGames.BX [Microsoft]5
Spyware.Keylogger [Symantec]5
Trojan.Win32.FraudPack.ton [Kaspersky Lab]5
Trojan:Win32/BHO.BH [Microsoft]5
Trojan-Downloader.Agent!sd6 [PC Tools]5
Trojan-Downloader.Win32.VB.qjt [Kaspersky Lab]5
Trojan-PSW.Generic [PC Tools]5
W32.SillyFDC [Symantec]5
Win-Trojan/Bho.65541.B [AhnLab]5
Adware.Websearch [PC Tools]4
Backdoor.Agent!sd6 [PC Tools]4
Backdoor.Win32.ZZSlash.buj [Kaspersky Lab]4
Constructor.Win32.KeySteal [Ikarus]4
Constructor.Win32.KeySteal.r [Kaspersky Lab]4
Downloader-BRW [McAfee]4
FakeAlert-av360.gen.b [McAfee]4
FakeAlert-CK [McAfee]4

Gen.Trojan [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China123
Russian Federation98
Brazil62
Spain43
Germany27
United Kingdom20
Republic of Korea8
Italy7
Ukraine5
Costa Rica4
Australia3
France3
Israel3
Netherlands3
Turkey3
Finland2
Oman2
Taiwan2
Canada1
Greece1
Hungary1
Indonesia1
Japan1
Poland1
Portugal1
Saudi Arabia1
Slovakia1
South Africa1
Sweden1

Gen.Trojan [Ikarus] is known to be created as:
%AllUsersProfile%\desktop.exe
%AllUsersProfile%\documents.exe
%AllUsersProfile%\drm.exe
%AllUsersProfile%\favorites.exe
%AllUsersProfile%\menu iniciar\programas\inicializar\svchost.exe
%AllUsersProfile%\templates.exe
%AppData%\eehl\eehl.dll
%AppData%\ff2.exe
%AppData%\ntshdg\ntshdg.exe
%AppData%\oynnuf.exe
%AppData%\windowstn\updater.exe
%CommonAppData%\adobe.exe
%CommonAppData%\microsoft.exe
%CommonAppData%\microsoft\crypto.exe
%CommonAppData%\microsoft\crypto\dss.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18.exe
%CommonAppData%\microsoft\network.exe
%CommonAppData%\microsoft\network\connections.exe
%CommonAppData%\microsoft\network\connections\cm.exe
%CommonAppData%\microsoft\network\connections\pbk.exe
%CommonAppData%\uninstallinformation\btil.exe
%CommonAppData%\vmware.exe
%CommonDocuments%\my music\sample playlists\00090beb.exe
%CommonPrograms%\accessories.exe
%CommonPrograms%\accessories\accessibility.exe
%CommonPrograms%\accessories\communications.exe
%CommonPrograms%\accessories\entertainment.exe
%CommonPrograms%\startup.exe
%CommonPrograms%\startup\70cuse.lnk.exe
%CommonStartMenu%\programs.exe
%FontsDir%\comress.dll
%Profiles%\default user\application data\microsoft.exe
%Profiles%\default user\cookies.exe
%Profiles%\default user\desktop.exe
%Profiles%\default user\favorites.exe
%Profiles%\default user\local settings\history.exe
%Profiles%\default user\local settings\history\history.ie5.exe
%Profiles%\default user\local settings\temp.exe
%Profiles%\default user\nethood.exe
%Profiles%\default user\printhood.exe
%Profiles%\default user\recent.exe
%Profiles%\default user\sendto.exe
%Profiles%\default user\start menu\programs.exe
%Profiles%\default user\start menu\programs\accessories.exe
%Profiles%\localservice.exe
%Profiles%\localservice\application data\flexiblesoft.exe
%Profiles%\localservice\application data\microsoft.exe
%Profiles%\localservice\cookies.exe
%Profiles%\localservice\local settings\history.exe
%Profiles%\localservice\local settings\history\history.ie5.exe
%Profiles%\localservice\local settings\temp.exe
%Profiles%\networkservice\application data\flexiblesoft.exe
%Profiles%\photo\photo1.exe
%ProgramFiles%\adult tube xxx codec\antivirus\setup.exe
%ProgramFiles%\advancedvirusremover\avr.exe
%ProgramFiles%\advancedvirusremover\pavrm.exe
%ProgramFiles%\alggui.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\citrix\nvsvc.exe
%ProgramFiles%\clzxabxpmdh\fuy0gh6d.exe
%ProgramFiles%\d93310q\gdabn.exe
%ProgramFiles%\feiyoue\update.exe
%ProgramFiles%\fvb332h7a.exe.exe
%ProgramFiles%\h4b3v24f\8abyqi2c9.exe
%ProgramFiles%\internet download manager\idman.exe
%ProgramFiles%\internet explorer\iedw.exe.exe
%ProgramFiles%\internet explorer\ielowutil2.exe
%ProgramFiles%\internet explorer\iexpleror.exe
%ProgramFiles%\internet explorer\iexploer.exe
%ProgramFiles%\internet explorer\iexplore.exe.exe
%ProgramFiles%\internet explorer\iexplores.exe
%ProgramFiles%\internet explorer\plugins\svchost.exe
%ProgramFiles%\internet explorer\svcnost.exe
%ProgramFiles%\internetsecurity2010\is2010.exe
%ProgramFiles%\java\jre1.6.0_06\bin\javas.exe
%ProgramFiles%\messenger\msmsgs.exe.exe
%ProgramFiles%\mia20qv6u0\a7lt8xbg88.exe
%ProgramFiles%\mia20qv6u0\a7lt8xbg88.exe.exe
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\microsoft office\office11\smss.exe
%ProgramFiles%\msn\msncorefiles\install\msnsusii.exe.exe
%ProgramFiles%\msn\msnia\msniasvc.exe.exe
%ProgramFiles%\msn\msninstaller\msninst.exe.exe
%ProgramFiles%\netmeeting\cb32.exe.exe
%ProgramFiles%\online services\icacls.exe
%ProgramFiles%\outlook express\msimn.exe.exe
%ProgramFiles%\reem3\reemgg.exe
%ProgramFiles%\resn.exe
%ProgramFiles%\spoolsc.exe
%ProgramFiles%\web publish\wpwiz.exe.exe
%ProgramFiles%\windows media player\migrate.exe.exe
%ProgramFiles%\windows nt\accessories\wordpad.exe.exe
%ProgramFiles%\windows nt\dialer.exe.exe
%ProgramFiles%\windowstn\updater.exe
%ProgramFiles%\winpcap\rpcapd.exe.exe
%Programs%\startup\csrss.exe
%Programs%\startup\scandisk.dll
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonDocuments% is a variable that refers to the file system directory that contains documents that are common to all users. A typical paths is C:\Documents and Settings\All Users\Documents.
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %CommonStartMenu% is a variable that refers to the file system directory that contains the programs and folders that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.