Threat Search: 

ThreatExpert's Statistics for Generic Dropper [McAfee]:

Generic Dropper [McAfee] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]613
Mal/Generic-A [Sophos]341
Trojan-Dropper.Agent [Ikarus]302
Downloader [Symantec]262
Trojan-Dropper.Agent!sd6 [PC Tools]198
Hacktool.Rootkit [Symantec]192
Trojan:Win32/Meredrop [Microsoft]170
Hacktool.Rootkit!sd6 [PC Tools]160
VirTool:WinNT/Rootkitdrv.GH [Microsoft]154
Trojan.Dropper [Symantec]146
Mal/EncPk-CK [Sophos]127
TrojanDropper:Win32/Srizbi.gen!D [Microsoft]127
Rootkit.Win32.Agent.hji [Kaspersky Lab]121
Troj/Mdrop-BZX [Sophos]110
Mal/Behav-009 [Sophos]107
Trojan-Dropper.Win32.Agent.yjl [Kaspersky Lab]106
Win-Trojan/Downloader.33720 [AhnLab]100
Trojan.Zlob [Ikarus]82
Troj/PWS-AXY [Sophos]72
Trojan-Dropper.Win32.Agent.aeok [Kaspersky Lab]72
Backdoor.Trojan [Symantec]65
Infostealer.Gampass [Symantec]58
Win32.SuspectCrc [Ikarus]50
Trojan.Win32.Agent.airv [Kaspersky Lab]49
Trojan.DL.Agent.DUTG [PC Tools]48
Win-Trojan/Agent.4096.EI [AhnLab]44
Trojan-Dropper.Rkit.AZ [Ikarus]42
W32.DSS.Trojan [Symantec]42
Trojan-Dropper.Win32.VB [Ikarus]37
Troj/Keygen-BI [Sophos]36
Trojan.Pandex [Symantec]34
Trojan-Dropper.Win32.Agent.ahfn [Kaspersky Lab]33
Win-Trojan/Xema.variant [AhnLab]33
Cryp_Xed-3 [Trend Micro]32
Mal/Dropper-AC [Sophos]32
Trojan.Win32.Runner [Ikarus]30
Trojan-Dropper.VB!sd6 [PC Tools]29
Trojan-Dropper.Win32.Malf [Ikarus]29
Infostealer [Symantec]28
Mal/Packer [Sophos]27
Trojan-Dropper.SSS [Ikarus]27
Backdoor.Graybird [Symantec]26
Trojan.Win32.Agent [Ikarus]25
Rootkit.Win32.Agent [Ikarus]24
TrojanDropper:Win32/Malf.gen [Microsoft]24
W32.SillyFDC [Symantec]24
Trojan-Dropper.Small!sd5 [PC Tools]23
Trojan-Dropper.Win32.Delf [Ikarus]23
Trojan.Agent!sd6 [PC Tools]22
Trojan-Dropper.Win32.Agent.agfl [Kaspersky Lab]21
Rootkit.DR.Podnuha.Gen [PC Tools]20
Suspicious.MH690 [Symantec]20
TrojanDropper:Win32/Dunik!rts [Microsoft]20
Backdoor.Bifrose [Symantec]19
Trojan-Dropper.Agent!sd5 [PC Tools]19
Trojan-Dropper.Win32.Cutwail [Ikarus]19
not-a-virus:Keygen.Adobe [Ikarus]18
Troj/BadCab-A [Sophos]18
TrojanDropper:Win32/Emold.C [Microsoft]18
Win-Trojan/Keygen.35343 [AhnLab]18
Trojan.Farfli [Symantec]17
Trojan.Win32.Meredrop [Ikarus]17
Trojan-Dropper.Win32.Small [Ikarus]17
Backdoor.FlyAgent!sd6 [PC Tools]16
Backdoor.Win32.FlyAgent [Ikarus]16
Backdoor.Win32.FlyAgent.lz [Kaspersky Lab]16
TROJ_SHEUR.BMD [Trend Micro]16
Trojan-Dropper.Vb.1 [Ikarus]16
Trojan-Dropper.Win32.Parsi.hf [Kaspersky Lab]16
TrojanDropper:Win32/Agent [Microsoft]16
TrojanDropper:Win32/Silly_P2P.B [Microsoft]16
Backdoor.Agent!sd6 [PC Tools]15
Mal/Dropper-G [Sophos]15
Trojan.Generic [Ikarus]15
Trojan-Dropper.Win32.Agent.fcu [Kaspersky Lab]15
TrojanDropper:Win32/Cutwail.AL [Microsoft]15
TrojanDropper:Win32/Opachki.A [Microsoft]15
W32.Spybot.Worm [Symantec]15
Mal/TibsPk-A [Sophos]14
Trojan:Win32/Relbma.A [Microsoft]14
VirTool:Win32/DelfInject.gen!L [Microsoft]14
Mal/Pushdo-A [Sophos]13
Troj/Mdrop-BRN [Sophos]13
Trojan-Downloader.Harnig.ZC [Ikarus]13
Trojan-Dropper.Win32.Delf.wj [Kaspersky Lab]13
TrojanDropper:Win32/Microjoin.AC [Microsoft]13
TrojanDropper:Win32/Small [Microsoft]13
Backdoor.Win32.Agent.qlv [Kaspersky Lab]12
HackTool:Win32/Keygen [Microsoft]12
Mal/PWS-Fam, Mal/EncPk-GF [Sophos]12
Packed.Generic.199 [Symantec]12
TROJ_DROPPER.DEX [Trend Micro]12
TROJ_MICROJOIN.W [Trend Micro]12
Trojan.Adclicker [Symantec]12
Trojan.PWS.OnLineGames.BCJ [PC Tools]12
Trojan-Dropper.Win32.Agent.bsk [Kaspersky Lab]12
Trojan-Dropper.Win32.KGen [Ikarus]12
Trojan-Dropper.Win32.VB.bpz [Kaspersky Lab]12
VirTool:Win32/Vtub.EL [Microsoft]12
Backdoor.Bifrose!sd6 [PC Tools]11

Generic Dropper [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
China343
Russian Federation168
United Kingdom44
Germany41
Sweden25
Spain22
Brazil15
France15
Taiwan11
Israel7
Portugal6
Ukraine6
Austria4
Greece4
Netherlands4
Slovenia3
Italy2
Poland2
Republic of Korea2
Romania2
Slovakia2
Turkey2
Bulgaria1
Canada1
Czech Republic1
Egypt1
Hungary1
Iran1
Lithuania1
Switzerland1

Generic Dropper [McAfee] is known to be created as:
%AppData%\lsasrv.exe
%AppData%\nsvcappflt.exe
%AppData%\server.exe
%CommonAppData%\driver.exe
%DesktopDir%\setup_ver1.1482.0.exe
%DesktopDir%\setup_ver1.1482.01.exe
%FontsDir%\53b37a00.dll
%FontsDir%\alg.exe
%FontsDir%\timpiatform.exe
%MyDocuments%\sound_mp3.1488.0.exe
%Profiles%\1058a.exe
%ProgramFiles%\38gqm7m7g.exe.com
%ProgramFiles%\533soft icon changer\changeicon.exe
%ProgramFiles%\5cfbkt53\vgci1ffzl.exe
%ProgramFiles%\5cfbkt53\vgci1ffzl.exe.com
%ProgramFiles%\ascii aga\uninstall.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\common files\system\ado\wuauclt.exe
%ProgramFiles%\common files\system\msconf.exe
%ProgramFiles%\common files\system\win32kernelupd.exe
%ProgramFiles%\common files\zy18n8.exe
%ProgramFiles%\flashfxp\flashfxp.exe
%ProgramFiles%\godlike developers\ram saver pro\comboost.exe
%ProgramFiles%\internet explorer\iedw.exe.com
%ProgramFiles%\internet explorer\iexplore.exe.com
%ProgramFiles%\messenger\msmsgs.exe.com
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\microsoft common\wuauclt.exe
%ProgramFiles%\msn\msncorefiles\install\msnsusii.exe.com
%ProgramFiles%\msn\msnia\msniasvc.exe.com
%ProgramFiles%\msn\msninstaller\msninst.exe.com
%ProgramFiles%\mui\igfxext.exe
%ProgramFiles%\netmeeting\cb32.exe.com
%ProgramFiles%\outlook express\msimn.exe.com
%ProgramFiles%\pic2ico\pic2ico.exe
%ProgramFiles%\vistaosx\uninstall.exe
%ProgramFiles%\web publish\wpwiz.exe.com
%ProgramFiles%\windows media player\migrate.exe.com
%ProgramFiles%\windows nt\accessories\wordpad.exe.com
%ProgramFiles%\windows nt\dialer.exe.com
%ProgramFiles%\winpcap\rpcapd.exe.com
%ProgramFiles%\wmvideoplugin\80_18.exe
%ProgramFiles%\zztoolbar\toolbar_bho.dll
%Programs%\startup\chkdisk.dll
%System%\_use.exe
%System%\090406-a-35.exe
%System%\1.exe
%System%\306a39\00c3ac.exe
%System%\6to4ex.dll
%System%\727d.exe
%System%\adbits.dll
%System%\autochk.dll
%System%\avpo.exe
%System%\avpo0.dll
%System%\bori.exe
%System%\braviax.exe
%System%\com\smss.exe
%System%\consol.dll
%System%\cpl32ver.exe
%System%\ctfmona.exe
%System%\dfrg.dll
%System%\dicthelper.dll
%System%\digeste.dll
%System%\dllcache\cmd.exe
%System%\dllcache\feymy.dll
%System%\dllcache\fly7873.dll
%System%\dllcache\flymain.dll
%System%\dllcache\flymain7873.dll
%System%\dllcache\ntsd.exe
%System%\dllcache\regedit.exe
%System%\dllcache\userinit.exe
%System%\driver.exe
%System%\drivers\ajq28.sys
%System%\drivers\lknmwxxw.sys
%System%\drivers\luc41.sys
%System%\drivers\nqtlvspx.sys
%System%\drivers\obj2.sys
%System%\drivers\prdlcgzp.sys
%System%\drivers\rtsxuppj.sys
%System%\drivers\smss.exe
%System%\drivers\svchost.exe
%System%\drivers\svsvqnrm.sys
%System%\drivers\uho52.sys
%System%\drivers\winuf63.sys
%System%\drivers\wnv74.sys
%System%\e404d.dll
%System%\eventsry.exe
%System%\explorer.exe
%System%\explorer\msn.exe
%System%\f_bmp2jpg.dll
%System%\feymy.dll
%System%\file.exe
%System%\fly7873.dll
%System%\flymain.dll
%System%\flymain7873.dll
%System%\found.exe
%System%\fservice.exe
%System%\gpr1.exe
%System%\gpr3.exe
%System%\ides.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %DesktopDir% is a variable that refers to the file system directory used to physically store file objects on the desktop. A typical path is C:\Documents and Settings\[UserName]\Desktop.
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %MyDocuments% is a variable that refers to the file system directory used to physically store a user's common repository of documents. A typical path is C:\Documents and Settings\[UserName]\My Documents.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).