Threat Search: 

ThreatExpert's Statistics for Generic.dx [McAfee]:

Generic.dx [McAfee] is also known as:
Threat AliasNumber of Incidents
Hacktool.Rootkit [Symantec]79,749
Troj/RKProc-Fam [Sophos]74,932
Rootkit.Win32.Agent [Ikarus]73,494
VirTool:WinNT/Rootkitdrv.DH [Microsoft]71,771
Win-Trojan/Agent.11904.C [AhnLab]66,967
Troj/AdvHack-A [Sophos]61,452
Backdoor.Tidserv!inf [Symantec]56,399
Trojan:Win32/Alureon.BB [Microsoft]53,465
Exploit.Win32.IMG-WMF.fk [Kaspersky Lab]50,625
Trojan.Fakeavalert!sd6 [PC Tools]47,394
DNSChanger.o [McAfee]46,455
Trojan-Downloader.Win32.Geral.ad [Kaspersky Lab]41,499
Trojan.Win32.Patched.dy [Kaspersky Lab]40,750
Rootkit.Agent!sd6 [PC Tools]39,259
Troj/PWS-AXY [Sophos]38,700
Trojan Horse [Symantec]38,256
Hacktool [Symantec]36,900
Email-Worm.Zhelatin [PC Tools]36,689
Packed.Win32.Tibs.ap [Kaspersky Lab]36,666
W32/AutoRun-MO [Sophos]35,175
Backdoor.IRC.Bot [Symantec]33,151
TROJ_AGENT.VJC [Trend Micro]32,940
Exploit.Win32.IMG-WMF [Ikarus]32,402
TROJ_AGENT.ZLH [Trend Micro]30,996
Trojan-Downloader.Win32.Agent.bfj [Kaspersky Lab]30,744
Packed.Win32.PePatch [Ikarus]28,692
Rootkit.Win32.Agent.fkt [Kaspersky Lab]27,666
Exploit.IMG-WMF!sd6 [PC Tools]26,775
Bloodhound.Unknown [Symantec]25,074
Trojan.Fakeavalert [Symantec]24,565
Exploit.IMG-WMF [PC Tools]23,400
TROJ_AGENT.ACSF [Trend Micro]23,319
Rootkit.Farfli.GEN [PC Tools]22,458
Trojan.Win32.Agent.cmn [Kaspersky Lab]20,544
Trojan.Patched.CL [Ikarus]20,212
Trojan-Downloader.Agent!sd5 [PC Tools]18,913
Backdoor.Trojan [Symantec]17,984
Win-Trojan/ExploitTool.3740 [AhnLab]17,775
Packed.Generic.181 [Symantec]16,349
Trojan.FakeAlert [PC Tools]15,003
Trojan.Zlob [Ikarus]14,829
Adware.Agent!sd5 [PC Tools]14,426
Trojan.Adclicker [Symantec]14,407
Trojan.SillyWorm [PC Tools]13,692
TROJ_WANTVI.E [Trend Micro]13,110
Trojan.Win32.Patched [Ikarus]11,830
Mal/Generic-A [Sophos]9,953
BKDR_CIADOOR.EA [Trend Micro]9,866
Trojan.DL.VB.AAVI [PC Tools]9,290
Trojan-Downloader.Win32.VB.bsa [Kaspersky Lab]7,442
Worm.AutoRun.GEN [PC Tools]7,019
Rootkit.Agent!sd5 [PC Tools]7,007
Packed/Upack [AhnLab]6,910
Mal/Packer, Mal/EncPk-BW [Sophos]6,569
Trojan-PWS.Win32.Small [Ikarus]6,346
Rootkit.Win32.Agent.jj [Kaspersky Lab]6,210
Generic BackDoor.t [McAfee]5,868
Trojan-GameThief.Win32.OnLineGames.abrf.a [Kaspersky Lab]5,840
Trojan-Dropper.Agent [Ikarus]5,733
BKDR_MIRCHACK.CE [Trend Micro]5,110
TROJ_PEACOMM.BQ [Trend Micro]5,103
Packed.Win32.PePatch.lb [Kaspersky Lab]5,053
Rootkit.Win32.Agent.fia [Kaspersky Lab]5,044
Trojan.Zapchast [PC Tools]4,698
Trojan.BAT.Runner.i [Kaspersky Lab]4,270
Hacktool.Rootkit!sd6 [PC Tools]4,056
TROJ_AGENT.ZNH [Trend Micro]3,657
Troj/NTRootK-CG [Sophos]3,519
Trojan:Win32/Rootkit.J [Microsoft]3,450
Troj/Agent-FWS [Sophos]3,290
W32/Autorun-KO [Sophos]3,260
Trojan.Patched.CK [Ikarus]2,609
Trojan.BAT.Runner [Ikarus]2,450
Mal/FakeVirPk-A, Mal/TibsPk-A [Sophos]2,307
Trojan.Agent!sd5 [PC Tools]2,189
Win-Trojan/Xema.variant [AhnLab]1,929
Trojan.Win32.AutoRun [Ikarus]1,925
Trojan.Win32.Inject.ks [Kaspersky Lab]1,890
Infostealer.Gampass [Symantec]1,872
TROJ_INJECT.DE [Trend Micro]1,820
Downloader.gen.a [McAfee]1,699
Generic Rootkit.d [McAfee]1,664
Trojan.Knowedel [Symantec]1,630
BackDoor-CJV [McAfee]1,583
Application.Whitelist [PC Tools]1,575
Trojan-Downloader.Win32.Agent.dbt [Kaspersky Lab]1,521
Trojan.Peacomm.D [Symantec]1,516
Worm.Autorun.ABH [PC Tools]1,467
Win32.SuspectCrc [Ikarus]1,458
Win-Trojan/Xema.149742 [AhnLab]1,400
Downloader [Symantec]1,385
Exploit.Win32.IMG-WMF.ex [Kaspersky Lab]1,350
Trojan.Zlob [Symantec]1,329
Backdoor.Win32.Frauder.fc [Kaspersky Lab]1,281
Win-Trojan/Agent.18944.DS [AhnLab]1,242
Packed/FSG [PC Tools]1,208
Mal/Packer [Sophos]1,172
not-a-virus:AdWare.Win32.Agent.zo [Kaspersky Lab]1,144
Trojan-Downloader.Win32.FraudLoad.vkwp [Kaspersky Lab]1,131
Trojan.StartPage.AKF [PC Tools]1,125

Generic.dx [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
China3,988
Russian Federation1,006
United Kingdom457
France196
Germany193
Brazil188
Italy100
Sweden86
Ukraine78
Republic of Korea73
Spain63
Netherlands53
Israel50
Portugal48
Poland41
Turkey28
Taiwan26
Canada23
Switzerland20
Australia18
Slovenia17
Japan14
Finland12
Belgium10
Norway10
Thailand9
Peru8
Saudi Arabia8
Czech Republic7
Iran7
Hungary6
Austria5
Denmark5
Slovakia5
Egypt4
Romania4
Ireland3
Croatia2
Indonesia2
Lithuania2
Argentina1
Belarus1
Colombia1
Costa Rica1
Estonia1
Hong Kong1
Iceland1
Latvia1
Libya1
New Zealand1
South Africa1
Syria1
Viet Nam1

Generic.dx [McAfee] is known to be created as:
%AllUsersProfile%\clean2.exe
%AllUsersProfile%\desktop.exe
%AllUsersProfile%\documents.exe
%AllUsersProfile%\drm.exe
%AllUsersProfile%\drm\drm.exe
%AllUsersProfile%\favorites.exe
%AllUsersProfile%\mdfs080411.dll
%AllUsersProfile%\ndm080411.exe
%AllUsersProfile%\nm080312.exe
%AllUsersProfile%\templates.exe
%AllUsersProfile%\winnet.exe
%AppData%\%username%.task\chasnah.exe
%AppData%\%username%.task\csrss.exe
%AppData%\%username%.task\lsass.exe
%AppData%\%username%.task\server.exe
%AppData%\%username%.task\smss.exe
%AppData%\adobe\manager.exe
%AppData%\adobe\rundtl.exe
%AppData%\bifrost\server.exe
%AppData%\cftmon.exe
%AppData%\cmstp.exe
%AppData%\comrepl.exe
%AppData%\csrss.exe
%AppData%\esentutl.exe
%AppData%\flexiblesoft.exe
%AppData%\hidires\flec003.exe
%AppData%\hidires\hidr.exe
%AppData%\hidires\m_hook.sys
%AppData%\hidires\rosa.sys
%AppData%\icq\rundll.exe
%AppData%\ieudinit.exe
%AppData%\ind.exe
%AppData%\inetinfo.exe
%AppData%\key folder\filewins.exe
%AppData%\lsass.exe
%AppData%\menu.exe
%AppData%\messanger\msn.exe
%AppData%\microsoft.exe
%AppData%\microsoft\cd burning\khatra.exe
%AppData%\microsoft\helpctr.exe
%AppData%\microsoft\mqtgsvc.exe
%AppData%\microsoft\mstsc.exe
%AppData%\microsoft\rundtl.exe
%AppData%\microsoft\windows media\9.0.exe
%AppData%\microsoft\windows.exe
%AppData%\microsoft\windows\lsass.exe
%AppData%\microsoft\windows\runlld.exe
%AppData%\microsoft\windows\winlogon.exe
%AppData%\mqtgsvc.exe
%AppData%\msmgs.exe
%AppData%\mstc.exe
%AppData%\nscagent.exe
%AppData%\pcre3.dll
%AppData%\printer.exe
%AppData%\real\ntoscore.exe
%AppData%\riwzllered.exe
%AppData%\rsvp.exe
%AppData%\services.exe
%AppData%\shieldmanager.exe
%AppData%\smss.exe
%AppData%\spooll.exe
%AppData%\suvsms.sys
%AppData%\svchost.exe
%AppData%\svchost32.exe
%AppData%\sysrc32.exe
%AppData%\un.virus.remover.2.3.-patch.exe
%AppData%\vmware.exe
%AppData%\wdfmgr.exe
%AppData%\whosts.exe
%AppData%\windows\csrss.exe
%AppData%\windows\lsass.exe
%AppData%\windows\services.exe
%AppData%\windows\smss.exe
%AppData%\windows\winlogon.exe
%AppData%\windowsupdate.exe
%AppData%\winlogon.exe
%CommonAppData%\3gp.exe
%CommonAppData%\avg.exe
%CommonAppData%\fearghus\lsass.exe
%CommonAppData%\flash.exe
%CommonAppData%\folder.exe
%CommonAppData%\free.exe
%CommonAppData%\ftptest\ftptest\1.0.0.0\launch.exe
%CommonAppData%\install.exe
%CommonAppData%\lineageii.exe
%CommonAppData%\microsoft.exe
%CommonAppData%\microsoft\bits.dll
%CommonAppData%\microsoft\crypto.exe
%CommonAppData%\microsoft\crypto\crypto.exe
%CommonAppData%\microsoft\crypto\dss.exe
%CommonAppData%\microsoft\crypto\dss\dss.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18\s-1-5-18.exe
%CommonAppData%\microsoft\microsoft.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.