Threat Search: 

ThreatExpert's Statistics for Mal/Behav-044 [Sophos]:

Mal/Behav-044 [Sophos] is also known as:
Threat AliasNumber of Incidents
Infostealer.Gampass [Symantec]51
Trojan-PSW.Gampass [PC Tools]46
Trojan Horse [Symantec]23
Trojan-Proxy.Win32.Small.zi [Kaspersky Lab]20
Infostealer.Onlinegame [Symantec]17
Trojan.Generic [PC Tools]14
Trojan-GameThief.Win32.OnLineGames.bnev [Kaspersky Lab]12
Trojan-GameThief.Win32.OnLineGames.vxnd [Kaspersky Lab]10
Trojan-Proxy.Win32.Small [Ikarus]10
Trojan.Hijacker [Ikarus]9
Win-Trojan/Onlinegamehack.26112 [AhnLab]8
PWS-Nemqe.dll [McAfee]7
Trojan-Downloader.Win32.Small.apbh [Kaspersky Lab]6
PWS.Win32 [Ikarus]5
Trojan-Proxy.Small!sd6 [PC Tools]5
Trojan-GameThief.Win32.OnLineGames.bmme [Kaspersky Lab]4
Trojan-GameThief.Win32.OnLineGames.vkzd [Kaspersky Lab]4
Trojan-GameThief.Win32.OnLineGames.wbjd [Kaspersky Lab]4
Win-Trojan/Downloader.11264.HZ [AhnLab]4
Win32.SuspectCrc [Ikarus]3
Backdoor.Trojan [Symantec]2
Downloader [Symantec]2
Downloader.Generic [PC Tools]2
Generic PWS.y!ec [McAfee]2
PWS-Mmorpg!mg [McAfee]2
Trojan-GameThief.Win32.OnLineGames [Ikarus]2
Trojan-PWS.OnlineGames.HL [PC Tools]2
Win-Trojan/OnlineGameHack.11776.EV [AhnLab]2
Adware.Adhelper [Symantec]1
Backdoor.Win32.Agent.wiq [Kaspersky Lab]1
BehavesLike [Ikarus]1
Generic Dropper [McAfee]1
Generic PWS.y!bvz [McAfee]1
Generic PWS.y!bxb [McAfee]1
Generic PWS.y!cy [McAfee]1
Infostealer [Symantec]1
Net-Worm.Win32.Mofeir.ca [Kaspersky Lab]1
New Malware.aj [McAfee]1
Trojan.Popuper [PC Tools]1
Trojan.Win32.SystemHijack [Ikarus]1
Trojan-Downloader [Ikarus]1
Trojan-Downloader.Win32.Agent.fm [Kaspersky Lab]1
Trojan-Dropper.Agent [Ikarus]1
Trojan-Dropper.Win32.Small.axa [Ikarus]1
Trojan-Dropper.Win32.Small.axa [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.bmhv [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.bmly [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vgxb [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vimr [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vkyg [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vucx [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vufy [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.vzqz [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.wafo [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.wayn [Kaspersky Lab]1
Trojan-Proxy.Win32.WinGater [Kaspersky Lab]1
TrojanProxy:Win32/Wingater.A [Microsoft]1
Trojan-PSW.Generic [PC Tools]1
Virus.Win32.Nethief [Ikarus]1
Win-Trojan/OnlineGameHack.11264.CK [AhnLab]1
Win-Trojan/OnlineGameHack.11264.CQ [AhnLab]1
Win-Trojan/OnlineGameHack.26624.ES [AhnLab]1
Win-Trojan/Onlinegamehack.27136 [AhnLab]1
Win-Trojan/Onlinegamehack.27136.B [AhnLab]1
Win-Trojan/OnlineGameHack.8704.BA [AhnLab]1
Win-Trojan/Xema.variant [AhnLab]1

Mal/Behav-044 [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
Italy1
New Zealand1
Republic of Korea1

Mal/Behav-044 [Sophos] is known to be created as:
%System%\avidm.dll
%System%\avidma.dll
%System%\dnfwg.dll
%System%\imansnaf.dll
%System%\intelproc.dll
%System%\lecomd.dll
%System%\lenst.dll
%System%\mnanse.dll
%System%\nativeproc.dll
%System%\nfr.dll
%System%\ntuscrb.dll
%System%\ntuscrd.dll
%System%\processa.dll
%System%\remotecomputer.exe
%System%\svhost.exe
%System%\ubnams.dll
%Windir%\imeinputs.exe
%Windir%\jdbcconf.exe
%Windir%\kb75143.exe
%Windir%\thunderupdate.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.