Threat Search: 

ThreatExpert's Statistics for Mal/Behav-035 [Sophos]:

Mal/Behav-035 [Sophos] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]11
Generic Downloader.x [McAfee]10
Trojan-Downloader.Win32.VB [Ikarus]9
Trojan-Downloader.Win32.VB.kwc [Kaspersky Lab]9
Generic.dx [McAfee]7
PWS:Win32/Yahoopass.J [Microsoft]4
BKDR_VB.AFG [Trend Micro]3
not-a-virus:Monitor.Win32.007SpySoft.308 [Kaspersky Lab]3
not-a-virus:Monitor.Win32.007SpySoft.342 [Ikarus]3
Spyware.007Spy [Symantec]3
Trojan-Downloader.VB!sd6 [PC Tools]3
W32.SillyP2P [Symantec]3
Win-Trojan/Xema.variant [AhnLab]3
Backdoor.Win32.Bifrose [Ikarus]2
Backdoor.Win32.VB.bqv [Kaspersky Lab]2
Generic AdClicker.a [McAfee]2
Generic PWS.y [McAfee]2
not-a-virus:AdTool.Win32.VB.a [Ikarus]2
Trojan.Generic [PC Tools]2
Virus.Win32.Trojan [Ikarus]2
Backdoor.VB!ct [PC Tools]1
Backdoor:Win32/VB [Microsoft]1
Downloader [Symantec]1
Gen.Trojan [Ikarus]1
Generic BackDoor [McAfee]1
Generic Downloader.j [McAfee]1
Generic Keylogger.r [McAfee]1
Generic.dx!dby [McAfee]1
Generic.NPop [Ikarus]1
Infostealer.Gampass [Symantec]1
not-a-virus:Monitor.Win32.007SpySoft.307 [Kaspersky Lab]1
TROJ_DLOADER.RA [Trend Micro]1
TROJ_DLOADER.XXN [Trend Micro]1
Trojan.DL.Agent.CXPP [PC Tools]1
Trojan.DL.Agent.ECWC [PC Tools]1
Trojan.Win32.Agent [Ikarus]1
Trojan.Win32.Agent.byix [Kaspersky Lab]1
Trojan.Win32.Pasta.flv [Kaspersky Lab]1
Trojan.Win32.Pasta.fuw [Kaspersky Lab]1
Trojan.Win32.Vake.A [Ikarus]1
Trojan.Win32.VB.kte [Kaspersky Lab]1
Trojan.Win32.Vilsel.ncp [Kaspersky Lab]1
Trojan:Win32/Orsam!rts [Microsoft]1
Trojan:Win32/Vake.A [Microsoft]1
Trojan-Clicker.Win32.VB.pi [Ikarus]1
Trojan-Clicker.Win32.VB.pi [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.gbi [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.mlr [Kaspersky Lab]1
Trojan-Dropper.Agent [Ikarus]1
Trojan-Dropper.Vb [Ikarus]1
Trojan-GameThief.Win32.WOW.ikd [Kaspersky Lab]1
Trojan-GameThief.Win32.WOW.ikl [Kaspersky Lab]1
TrojanSpy:Win32/Vlogger.I [Microsoft]1
TrojanSpy:Win32/Vlogger.M [Microsoft]1
Virus.Win32.AutoRun [Ikarus]1
Virus.Win32.Rootkit [Ikarus]1
W32.SillyFDC [Symantec]1
Win32.SuspectCrc [Ikarus]1
Win-Trojan/Downloader.33280.BH [AhnLab]1
Win-Trojan/QQPass.90112.O [AhnLab]1
Worm.Win32.AutoRun.aisp [Kaspersky Lab]1
Worm.Win32.AutoRun.gsr [Kaspersky Lab]1
Worm:Win32/Autorun.NG [Microsoft]1

Mal/Behav-035 [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China7
Spain5
Russian Federation2
Germany1
Taiwan1

Mal/Behav-035 [Sophos] is known to be created as:
%ProgramFiles%\windows nt\ctfmon.exe
%Temp%\ixp000.tmp\svchost.exe
%Temp%\rundll32.com
%Windir%\inf\svchost.exe
%Windir%\regedit\svchost.exe
%Windir%\services.exe
%Windir%\svchost.exe
%Windir%\system.exe
c:\ssrcc\svchost.exe
c:\svchost.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.