Threat Search: 

ThreatExpert's Statistics for Mal/Inet-Fam [Sophos]:

Mal/Inet-Fam [Sophos] is also known as:
Threat AliasNumber of Incidents
Infostealer.Gampass [Symantec]6,002
Trojan-Spy.Gampass!sd6 [PC Tools]3,562
Generic.Onlinegames [Ikarus]1,571
PWS-Mmorpg!i [McAfee]927
Trojan-GameThief.Win32.Magania.azlm [Kaspersky Lab]900
Trojan-GameThief.Win32.WOW [Ikarus]798
Win-Trojan/OnlineGameHack.18511.B [AhnLab]699
Trojan-GameThief.Win32.WOW.lrq [Kaspersky Lab]678
PWS-OnlineGames.ek [McAfee]568
PWS-OnlineGames.ei [McAfee]564
Trojan-GameThief.Win32.Magania.bafr [Kaspersky Lab]561
Trojan-GameThief.Win32.Magania.ayyh [Kaspersky Lab]399
Mal/Generic-A [Sophos]388
Downloader [Symantec]385
Win-Trojan/Magania.15447 [AhnLab]380
Trojan-GameThief.Win32.Magania.azfz [Kaspersky Lab]364
Win-Trojan/Magania.14926.B [AhnLab]362
Trojan-GameThief.Magania.bafc [PC Tools]299
Win-Trojan/WowHack.25640 [AhnLab]270
Trojan-Downloader.Win32.Small.jis [Kaspersky Lab]240
Win-Trojan/Downloader.9728.KT [AhnLab]240
Win-Trojan/WowHack.15912.B [AhnLab]196
Trojan-GameThief.Win32.Magania.bafc [Kaspersky Lab]183
Trojan-GameThief.Win32.Magania.bbdx [Kaspersky Lab]176
Win-Trojan/OnlineGameHack.220249 [AhnLab]176
Trojan-GameThief.Win32.Magania.aznj [Kaspersky Lab]162
Trojan-GameThief.Win32.Magania.bafe [Kaspersky Lab]152
Trojan-GameThief.Win32.Magania.bafm [Kaspersky Lab]145
Trojan-Downloader.Win32.Small [Ikarus]144
Trojan-GameThief.Win32.Magania.bafi [Kaspersky Lab]143
Trojan-GameThief.Win32.Magania.bafb [Kaspersky Lab]128
Infostealer.Onlinegame [Symantec]123
Win-Trojan/OnlineGameHack.16486.B [AhnLab]121
Virus.Win32.OnLineGames [Ikarus]119
Win-Trojan/Magania.219722 [AhnLab]117
Trojan-Downloader.Small!sd6 [PC Tools]99
Trojan-PSW.Win32.QQPass.hwq [Kaspersky Lab]98
Win-Trojan/Magania.15444 [AhnLab]98
Win-Trojan/Magania.16475 [AhnLab]98
Trojan-GameThief.Win32.Magania.azdo [Kaspersky Lab]96
Trojan-GameThief.Win32.Magania.azdr [Kaspersky Lab]93
Win-Trojan/Magania.18005.B [AhnLab]84
Win-Trojan/Magania.16471.C [AhnLab]78
Win-Trojan/Magania.16486.C [AhnLab]78
Trojan-Spy.Onlinegame!sd6 [PC Tools]77
Generic Downloader.x [McAfee]75
Trojan-GameThief.Magania.bafi [PC Tools]72
Win-Trojan/Magania.16983.E [AhnLab]72
Trojan-GameThief.Win32.Magania.azds [Kaspersky Lab]70
Trojan Horse [Symantec]69
Win-Trojan/Magania.17482 [AhnLab]66
Trojan-Spy [Ikarus]64
Trojan-GameThief.Win32.Magania.aywv [Kaspersky Lab]63
Trojan-GameThief.Win32.OnLineGames.blwg [Kaspersky Lab]56
Win-Trojan/Magania.17480 [AhnLab]56
Win-Trojan/OnlineGameHack.18001.D [AhnLab]56
Trojan-GameThief.Win32.Magania.ayri [Kaspersky Lab]54
PWS:Win32/Deeneph.D [Microsoft]51
Generic PWS.y!s [McAfee]49
Trojan-GameThief.Win32.OnLineGames.blwv [Kaspersky Lab]49
Win-Trojan/Magania.15451.C [AhnLab]49
Win-Trojan/OnlineGameHack.16474.B [AhnLab]49
Trojan-GameThief.Win32.Magania.azfr [Kaspersky Lab]46
Trojan-GameThief.Win32.Magania.bbqq [Kaspersky Lab]43
BKDR_AGENT.ABJM [Trend Micro]42
Generic.dx [McAfee]42
Mal_OLGM-6 [Trend Micro]41
Virus.Win32.Agent [Ikarus]41
Trojan.Win32.BHO.d [Ikarus]40
Trojan-GameThief.Win32.WOW.ihl [Kaspersky Lab]40
Win-Trojan/Xema.variant [AhnLab]40
Trojan.Zapchast [PC Tools]36
Trojan-Downloader.Win32.Adload.cgs [Kaspersky Lab]36
Trojan-Downloader.Small [Ikarus]35
Trojan-GameThief.Win32.OnLineGames.uwvh [Kaspersky Lab]35
Generic BackDoor [McAfee]32
Backdoor.Trojan [Symantec]31
Win-Trojan/OnlineGameHack.18003.B [AhnLab]31
Trojan.Win32.Agent.cbpp [Kaspersky Lab]30
Trojan-Downloader.Adload!sd6 [PC Tools]30
Win-Trojan/Magania.16473 [AhnLab]30
PWS:Win32/Lolyda.AG [Microsoft]28
Trojan-Dropper.Agent [Ikarus]28
Win-Trojan/Adload.32768.T [AhnLab]27
Generic PWS.y!f [McAfee]25
Trojan.Win32.Agent.cepl [Kaspersky Lab]25
Trojan-Downloader.Win32.Agent.bkal [Kaspersky Lab]25
Trojan-GameThief.Win32.Magania.azay [Kaspersky Lab]25
Trojan-GameThief.Win32.Magania.bafs [Kaspersky Lab]25
Win-Trojan/Agent.29184.KB [AhnLab]25
Win-Trojan/Agent.9728.ML [AhnLab]25
Win-Trojan/Magania.16486.B [AhnLab]25
Generic PWS.y [McAfee]22
Backdoor.Win32.Ciadoor [Ikarus]21
Trojan.Agent!sd6 [PC Tools]21
Trojan-GameThief.Win32.Magania.azml [Kaspersky Lab]20
Trojan-Spy.Win32.Ftput.c [Kaspersky Lab]20
Trojan-GameThief.Win32.Magania.bcdx [Kaspersky Lab]19
TrojanSpy.Ftput.B [PC Tools]18
Trojan-GameThief.Win32.Magania.azoa [Kaspersky Lab]17

Mal/Inet-Fam [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China292
Brazil65
Russian Federation28
United Kingdom27
Republic of Korea12
Iran4
Poland4
Sweden3
Germany2
Australia1
Israel1
Netherlands1
Singapore1
Turkey1

Mal/Inet-Fam [Sophos] is known to be created as:
%AllUsersProfile%\desktop.exe
%AllUsersProfile%\favorites.exe
%AppData%\cmstp.exe
%AppData%\comrepl.exe
%AppData%\esentutl.exe
%AppData%\ieudinit.exe
%AppData%\microsoft\cd burning\khatra.exe
%AppData%\microsoft\mqtgsvc.exe
%AppData%\microsoft\mstsc.exe
%AppData%\mqtgsvc.exe
%AppData%\rsvp.exe
%CommonDesktopDir%\desktop.exe
%CommonFavorites%\favorites.exe
%CommonPrograms%\startup\cssrs.exe
%CommonPrograms%\startup\lsass.exe
%FontsDir%\qwtosris.dll
%ProgramFiles%\1k66434m4jeq.exe
%ProgramFiles%\50qmq.exe
%ProgramFiles%\9j89e7y.exe
%ProgramFiles%\ad muncher\browserextensions.0.4.exe
%ProgramFiles%\altcmd\altcmd32.dll
%ProgramFiles%\avgtray_.exe
%ProgramFiles%\ccfiv95zhi.exe
%ProgramFiles%\common files\system\smss.exe
%ProgramFiles%\dfs2i.exe
%ProgramFiles%\enznh4.exe
%ProgramFiles%\explorer.exe
%ProgramFiles%\intel\wireless\bin\svchostr.exe
%ProgramFiles%\mmsassist\mmsassist.dll
%ProgramFiles%\pbyn6ve.exe
%ProgramFiles%\quicktime_.exe
%ProgramFiles%\s1limibdtz.exe
%ProgramFiles%\spywareremover2009\pp.exe
%ProgramFiles%\thunmail\testabd.exe
%ProgramFiles%\uxua4z98.exe
%ProgramFiles%\virusremover2009\pp.exe
%ProgramFiles%\webmediaplayer\uninst.exe
%ProgramFiles%\xpshield\xp-shield.exe
%ProgramFiles%\yt7cp0izlrw.exe
%Programs%\startup\377f7.exe.exe
%Programs%\startup\6420c.exe.exe
%Programs%\startup\a2811.exe.exe
%Programs%\startup\autostart.exe
%Programs%\startup\dde8d.exe.exe
%Programs%\startup\e5b1c.exe.exe
%System%\00134.exe
%System%\02220.exe
%System%\08223b03.dll
%System%\090514-1-9.exe
%System%\090520-4-1.exe
%System%\090520-a-8.exe
%System%\122b901e.dll
%System%\12days.dll
%System%\20020.exe
%System%\2ef0d734.dll
%System%\30034.exe
%System%\31134.exe
%System%\43243.exe
%System%\56bc86c7.dll
%System%\6to4v32.dll
%System%\704c3595.dll
%System%\76b9ba7a.dll
%System%\888888.exe
%System%\a0c86020.dll
%System%\a1a6bc2e.dll
%System%\a2a8c74.dll
%System%\a2e5e62.exe
%System%\a4a0a70.dll
%System%\acg9ycsarj8y.dll
%System%\bmsg6pdmd4ht.dll
%System%\c4c5b21.exe
%System%\ccca2fb9.dll
%System%\cssrs.exe
%System%\cssrss.exe
%System%\dbbin.dll
%System%\dhdhws7ffw.dll
%System%\dllcache\svchost.exe
%System%\drivers\cmstp.exe
%System%\drivers\comrepl.exe
%System%\duba.exe
%System%\e4814792.dll
%System%\e5e3b07.exe
%System%\ed78ab9.dll
%System%\efc0c52cc1.dll
%System%\erdznufbk0zf.dll
%System%\flymain.dll
%System%\fsp32.exe
%System%\gaz2akyyg.dll
%System%\grtzqh5snrhat.dll
%System%\helpdbg.dll
%System%\hzs3r95w.dll
%System%\inertno.exe
%System%\jbn2ypqy23vwx.dll
%System%\khatra.exe
%System%\kiudsxd.dll
%System%\kivir.exe
%System%\krwnqll.exe
%System%\kt2nuqzegma.dll
%System%\kw5xuyzjcsnws.dll
%System%\m37tettx7ye5c.dll
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonDesktopDir% is a variable that refers to the file system directory that contains files and folders that appear on the desktop for all users. A typical path is C:\Documents and Settings\All Users\Desktop (Windows NT/2000/XP).
  • %CommonFavorites% is a variable that refers to the file system directory that serves as a common repository for all users' favorite items. A typical path is C:\Documents and Settings\All Users\Favorites (Windows NT/2000/XP).
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).