Threat Search: 

ThreatExpert's Statistics for IM-Worm.Win32.Sumom [Ikarus]:

IM-Worm.Win32.Sumom [Ikarus] is also known as:
Threat AliasNumber of Incidents
Mal/EncPk-BU, Mal/Packer, Mal/EncPk-BA [Sophos]14
Generic.dx [McAfee]5
Win-Trojan/Xema.variant [AhnLab]4
Backdoor.Graybird [Symantec]2
Trojan Horse [Symantec]2
Backdoor.Trojan [Symantec]1
Backdoor.VB.AEA [PC Tools]1
Backdoor.Win32.VB.aea [Kaspersky Lab]1
Backdoor.Win32.VB.jiy [Kaspersky Lab]1
Backdoor:Win32/VB [Microsoft]1
Generic BackDoor.bc [McAfee]1
Generic.dx!op [McAfee]1
Mal/EncPk-BA, Mal/EncPk-BU, Mal/Packer [Sophos]1
Mal/EncPk-BU, Mal/TinyDL-T, Mal/Packer, Mal/Behav-134, Mal/EncPk-BA [Sophos]1
Packed/MEW [PC Tools]1
Troj/Patch-F [Sophos]1
TROJ_PANDEX.GS [Trend Micro]1
Trojan.Generic [PC Tools]1
Trojan.Pandex [Symantec]1
Trojan.Win32.Crypt.ta [Kaspersky Lab]1
Trojan:Win32/Malat [Microsoft]1
W32.Stration.A@mm [Symantec]1
Worm.Win32.VB.aqs [Kaspersky Lab]1

IM-Worm.Win32.Sumom [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation2

IM-Worm.Win32.Sumom [Ikarus] is known to be created as:
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.