Threat Search: 

ThreatExpert's Statistics for Generic Downloader.x!fi [McAfee]:

Generic Downloader.x!fi [McAfee] is also known as:
Threat AliasNumber of Incidents
Dropper/Downloader.29184.O [AhnLab]9
Hacktool.Rootkit [Symantec]9
Trojan-Downloader.Win32.Agent.cffj [Kaspersky Lab]9
Backdoor.Win32.Farfli [Ikarus]6
Hacktool.Rootkit!sd6 [PC Tools]6
Mal/Generic-A [Sophos]5
Generic.Botget [Ikarus]2
Mal/EncPk-HJ [Sophos]2
Trojan Horse [Symantec]2
TrojanDownloader:Win32/Bredolab.B [Microsoft]2
Trojan-Dropper.Win32.Small.dob [Kaspersky Lab]2
VBS/Runner.8192 [AhnLab]2
Generic.Trojan-Downloader.Murlo [Ikarus]1
Packed.Generic.225 [Symantec]1
Trojan.Win32.Agent2.krb [Kaspersky Lab]1
Trojan-Downloader.Win32.Bredolab [Ikarus]1
TrojanDownloader:Win32/Agent.LA [Microsoft]1
TrojanDownloader:Win32/Murlo.P [Microsoft]1
Virus.Win32.Ups [Ikarus]1
Win-Trojan/Murlo.70839 [AhnLab]1

Generic Downloader.x!fi [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
China9
Russian Federation2

Generic Downloader.x!fi [McAfee] is known to be created as:
%System%\msansspc.dll
%Temp%\crypt.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).