Threat Search: 

ThreatExpert's Statistics for Generic VB.b [McAfee]:

Generic VB.b [McAfee] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]234
W32.SillyFDC [Symantec]174
WORM_VB.FON [Trend Micro]155
Trojan.Win32.Agent.dcb [Kaspersky Lab]112
Trojan.DR.VanBot.FI [PC Tools]86
WORM_VB.CIU [Trend Micro]72
Trojan.Win32.VB.atg [Kaspersky Lab]69
Mal/VB-F [Sophos]63
Trojan.VB.ZBW [PC Tools]60
W32.SillyDC [Symantec]56
Trojan:Win32/Startpage.DE [Microsoft]47
Trojan-Dropper.Win32.VB.lu [Kaspersky Lab]44
Win-Trojan/Xema.variant [AhnLab]44
Trojan.Win32.VB [Ikarus]43
Downloader [Symantec]42
Trojan.Win32.Agent [Ikarus]42
Trojan-Downloader.Win32.VB.aza [Kaspersky Lab]40
Mal/StartP-A, Mal/Emogen-H, Mal/Emogen-F [Sophos]37
Worm.AutoRun.PX [PC Tools]37
Worm.P2P.VB.AAUQ [PC Tools]32
Trojan-Downloader.Win32.Banload.ihm [Kaspersky Lab]31
Trojan.DL.Banload.WOG [PC Tools]29
Trojan-Dropper.VB!sd5 [PC Tools]26
Trojan.Win32.VB.idf [Kaspersky Lab]25
Trojan:Win32/VB [Microsoft]25
Worm:Win32/Hamweq.W [Microsoft]25
Worm.Win32.VB [Ikarus]24
Email-Worm.Win32.VB.cb [Kaspersky Lab]23
Worm.Win32.VB.cj [Kaspersky Lab]23
P2P-Worm.Win32.VB.fc [Kaspersky Lab]21
W32.Dizan [Symantec]21
WORM_VB.CII [Trend Micro]21
Mal/Generic-A [Sophos]20
Worm:Win32/Lefgroo.A [Microsoft]20
VirTool:Win32/VBInject.gen!AN [Microsoft]18
Mal/VB-AB [Sophos]17
Trojan-Dropper.Win32.VB.ijd [Kaspersky Lab]17
TROJ_DROPPER.CTP [Trend Micro]15
Trojan.Win32.Agent.bjcp [Kaspersky Lab]15
VirTool:Win32/VBInject.B [Microsoft]15
Virus.Win32.Agent.PEK [Ikarus]15
Win-Trojan/Agent.40960.VA [AhnLab]15
Trojan.DL.VB.AAPD [PC Tools]14
W32.SillyWNSE [Symantec]14
Worm.DR.RBot.EEN [PC Tools]13
WORM_VB.CDV [Trend Micro]13
Worm.Win32.AutoRun.aul [Kaspersky Lab]12
Worm.Win32.VB.el [Kaspersky Lab]12
Worm.Win32.VB.ki [Kaspersky Lab]12
Backdoor.Trojan [Symantec]10
Mal/StartP-A, Mal/Emogen-H, Mal/Emogen-F, Mal/VB-M [Sophos]10
Troj/Dropper-EM [Sophos]10
TROJ_VB.FD [Trend Micro]10
Trojan.VB!sd5 [PC Tools]10
Trojan.Win32.VB.ief [Kaspersky Lab]10
Trojan-Dropper.Agent [PC Tools]10
Trojan-Dropper.Win32.VB.LU [Ikarus]10
TrojanSpy.VB.EXB [PC Tools]10
W32.Mysamurai [Symantec]10
Win32/Brontok.worm.118784.B [AhnLab]10
Worm:Win32/Alcan.I [Microsoft]10
Worm:Win32/VB.HG [Microsoft]10
Mal/VBWorm-C [Sophos]9
Trojan.Crypt.E [PC Tools]9
Trojan.Win32.VB.gxq [Kaspersky Lab]9
W32.Alcra.C [Symantec]9
Win-Trojan/Agent.32768.UX [AhnLab]9
Worm.Win32.VB.an [Kaspersky Lab]9
Worm:Win32/SillyFDC.I [Microsoft]9
WORM_VB.AJI [Trend Micro]9
WORM_VB.AQ [Trend Micro]9
Hacktool.Spammer [Symantec]8
JS.Chir.B [PC Tools]8
Mal/Behav-043 [Sophos]8
Mal/VBAgt-A, Mal/VB-Z, Mal/Behav-211 [Sophos]8
Virus.Win32.AutoRun.fb [Kaspersky Lab]8
Virus.Win32.Texel.i [Kaspersky Lab]8
W32/VB-DOC [Sophos]8
Win-Trojan/Agent.76540 [AhnLab]8
Worm.VB.DTSH [PC Tools]8
Dropper/Xema.233472.D [AhnLab]7
Trojan.KillAV [Symantec]7
Trojan.VB.YRR [PC Tools]7
Trojan-Downloader.Win32.VB.aza [Ikarus]7
Worm.VB.VLL [PC Tools]7
Worm.Win32.VB.act [Kaspersky Lab]7
Worm.Win32.VB.cj [Ikarus]7
WORM_VB.DHQ [Trend Micro]7
WORM_VB.FOP [Trend Micro]7
Bloodhound.Unknown [Symantec]6
Mal/VBWorm-C, Mal/Emogen-F [Sophos]6
Mal/VB-Z, Mal/Behav-211, Mal/VBAgt-A [Sophos]6
Troj/Gom-Gen [Sophos]6
Trojan.Win32.VB.aul [Kaspersky Lab]6
Trojan.Win32.VB.cre [Kaspersky Lab]6
Trojan:Win32/Vorus.AK [Microsoft]6
Trojan-Downloader.Win32.VB [Ikarus]6
Virus.Win32.VB.bb [Ikarus]6
W32.Setclo [Symantec]6
W32/Silly-E [Sophos]6

Generic VB.b [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
China120
Spain30
Germany4
Turkey4
Canada3
Russian Federation3
Italy2
Japan1
Taiwan1
United Kingdom1

Generic VB.b [McAfee] is known to be created as:
%AllUsersProfile%\drm\drm.exe
%AppData%\icsys.icn.exe
%AppData%\mrsys.exe
%CommonAppData%\microsoft\crypto\crypto.exe
%CommonAppData%\microsoft\crypto\dss\dss.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18\s-1-5-18.exe
%CommonAppData%\microsoft\microsoft.exe
%CommonAppData%\microsoft\network\connections\cm\cm.exe
%CommonAppData%\microsoft\network\connections\connections.exe
%CommonAppData%\microsoft\network\connections\pbk\pbk.exe
%CommonAppData%\microsoft\network\network.exe
%CommonDesktopDir%\desktop.exe
%CommonDesktopDir%\documents.exe
%CommonDocuments%\documents.exe
%CommonFavorites%\favorites.exe
%CommonPrograms%\accessories\accessibility\accessibility.exe
%CommonPrograms%\accessories\accessories.exe
%CommonPrograms%\accessories\communications\communications.exe
%CommonPrograms%\accessories\entertainment\entertainment.exe
%CommonPrograms%\programs.exe
%CommonPrograms%\startup\adobe.com
%CommonPrograms%\startup\startup.exe
%CommonPrograms%\startup\svchost.exe
%CommonPrograms%\startup\systemil2.exe
%CommonTemplates%\templates.exe
%DesktopDir%\desktop.exe
%Favorites%\favorites.exe
%Favorites%\links\links.exe
%LocalSettings%\tempservices.exe.exe
%MyDocuments%\dlhost.exe
%MyDocuments%\explorer.exe
%MyDocuments%\musica.exe
%Profiles%\360buy.exe
%Profiles%\360kill.exe
%Profiles%\default user\application data\microsoft\microsoft.exe
%Profiles%\default user\desktop\desktop.exe
%Profiles%\default user\favorites\favorites.exe
%Profiles%\default user\local settings\history\history.exe
%Profiles%\default user\local settings\temp\temp.exe
%Profiles%\default user\nethood\nethood.exe
%Profiles%\default user\printhood\printhood.exe
%Profiles%\default user\recent\recent.exe
%Profiles%\default user\sendto\sendto.exe
%Profiles%\default user\start menu\programs\programs.exe
%Profiles%\default user\start menu\programs\startup\startup.exe
%Profiles%\default user\templates\templates.exe
%Profiles%\localservice\application data\microsoft\microsoft.exe
%Profiles%\localservice\local settings\history\history.exe
%Profiles%\localservice\local settings\temp\temp.exe
%Profiles%\localservice\localservice.exe
%ProgramFiles%\explorer.exe
%ProgramFiles%\messenger\messenger.exe
%ProgramFiles%\microsoft office\temp.exe
%ProgramFiles%\microsoft\svchost.exe
%ProgramFiles%\msn\msn.exe
%ProgramFiles%\netmeeting\netmeeting.exe
%ProgramFiles%\vmware\vmware.exe
%ProgramFiles%\windowsupdate\windowsupdate.exe
%ProgramFiles%\winpcap\winpcap.exe
%ProgramFiles%\winupdates\winupdates.exe
%ProgramFiles%\xerox\xerox.exe
%Programs%\accessories\accessibility\accessibility.exe
%Programs%\accessories\accessories.exe
%Programs%\accessories\entertainment\entertainment.exe
%Programs%\programs.exe
%Programs%\startup\musica.exe
%Programs%\startup\startup.exe
%Programs%\startup\startupfolder.com
%System%\1025.exe
%System%\1025\1025.exe
%System%\1028.exe
%System%\1028\1028.exe
%System%\1031.exe
%System%\1031\1031.exe
%System%\1033.exe
%System%\1033\1033.exe
%System%\1037.exe
%System%\1037\1037.exe
%System%\1041.exe
%System%\1041\1041.exe
%System%\1042.exe
%System%\1042\1042.exe
%System%\1054.exe
%System%\1054\1054.exe
%System%\2.exe
%System%\2052.exe
%System%\2052\2052.exe
%System%\3076.exe
%System%\3076\3076.exe
%System%\3com_dmi.exe
%System%\3com_dmi\3com_dmi.exe
%System%\afg32.exe
%System%\algsrvs.exe
%System%\bttnserv.exe
%System%\catroot.exe
%System%\catroot\catroot.exe
%System%\catroot2.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonDesktopDir% is a variable that refers to the file system directory that contains files and folders that appear on the desktop for all users. A typical path is C:\Documents and Settings\All Users\Desktop (Windows NT/2000/XP).
  • %CommonDocuments% is a variable that refers to the file system directory that contains documents that are common to all users. A typical paths is C:\Documents and Settings\All Users\Documents.
  • %CommonFavorites% is a variable that refers to the file system directory that serves as a common repository for all users' favorite items. A typical path is C:\Documents and Settings\All Users\Favorites (Windows NT/2000/XP).
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %CommonTemplates% is a variable that refers to the file system directory that contains the templates that are available to all users. A typical path is C:\Documents and Settings\All Users\Templates (Windows NT/2000/XP).
  • %DesktopDir% is a variable that refers to the file system directory used to physically store file objects on the desktop. A typical path is C:\Documents and Settings\[UserName]\Desktop.
  • %Favorites% is a variable that refers to the file system directory that serves as a common repository for the user's favorite items. A typical path is C:\Documents and Settings\[UserName]\Favorites.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %MyDocuments% is a variable that refers to the file system directory used to physically store a user's common repository of documents. A typical path is C:\Documents and Settings\[UserName]\My Documents.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).