Threat Search: 

ThreatExpert's Statistics for Mal/TinyDL-T [Sophos]:

Mal/TinyDL-T [Sophos] is also known as:
Threat AliasNumber of Incidents
Downloader [Symantec]435
Downloader.Generic [PC Tools]393
Trojan.Win32.Koobface [Ikarus]294
Net-Worm.Win32.Koobface.dji [Kaspersky Lab]289
Generic.dx!mbq [McAfee]221
Win-Trojan/amgfbcin31k.14336 [AhnLab]221
Trojan-Spy.Goldun.NDC [Ikarus]107
Trojan.Goldun [Symantec]62
Trojan-Spy.Win32.Goldun [Ikarus]57
Generic.dx!lec [McAfee]48
Net-Worm.Win32.Koobface.cvo [Kaspersky Lab]48
Win32/Koobface.worm.14336.AM [AhnLab]48
Infostealer [Symantec]43
Virus.Win32.Sality [Ikarus]34
Downloader.MisleadApp [Symantec]32
Trojan-Downloader.Win32.Small.agdo [Kaspersky Lab]32
Backdoor.Trojan [Symantec]31
Adware.Agent.ZO [PC Tools]30
Trojan-Downloader.Win32.Small [Ikarus]29
Generic Downloader.x [McAfee]28
Generic PWS.y [McAfee]28
Net-Worm.Win32.Koobface.csi [Kaspersky Lab]26
Trojan Horse [Symantec]26
Worm.Win32.AutoRun.enw [Kaspersky Lab]21
Trojan-Spy.Win32.Goldun.axn [Kaspersky Lab]20
W32.Dotex.CA [Symantec]18
BackDoor-BAC.gen [McAfee]17
New Malware.aj [McAfee]15
Generic Proxy [McAfee]13
Trojan.Goldun!sd6 [PC Tools]13
Generic Rootkit.d [McAfee]10
Suspicious.MH690 [Symantec]10
Trojan:Win32/Agent.PX [Microsoft]10
Generic.dx [McAfee]9
Trojan.Goldun [PC Tools]9
Trojan-Proxy.Win32.Agent.brs [Kaspersky Lab]9
Trojan-Spy.Goldun!sd6 [PC Tools]9
Trojan.Agent!sd6 [PC Tools]8
Trojan.Win32.Agent [Ikarus]8
Trojan.Win32.Agent.arfd [Kaspersky Lab]8
Worm.AutoRun!sd6 [PC Tools]8
Trojan.Fakeavalert [Symantec]7
W32.Spamuzle [Symantec]7
W32/MarioF-Gen, Mal/TinyDL-T [Sophos]7
Net-Worm.Win32.Koobface.cvc [Kaspersky Lab]6
Trojan-DDoS.Win32.Artlu [Ikarus]6
Trojan.Fakeavalert!sd6 [PC Tools]5
Trojan.Win32.Agent.afjd [Kaspersky Lab]5
Trojan.Win32.Agent.yls [Kaspersky Lab]5
Trojan-Downloader.Win32.Zlob [Ikarus]5
Trojan-Dropper.Agent [Ikarus]5
Trojan-Spy.Win32.Goldun.bbx [Kaspersky Lab]5
Win-Trojan/Xema.variant [AhnLab]5
BackDoor-BAC.dll [McAfee]4
Trojan.Agent [PC Tools]4
Trojan.FakeAV [Symantec]4
Trojan-Downloader.Win32.Small.agoy [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.aox [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.bab [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.bcl [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.bfh [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.bxl [Kaspersky Lab]4
Trojan-Spy.Win32.Goldun.bzp [Kaspersky Lab]4
Virus.Win32.Delf.DQP [Ikarus]4
W32/Autorun.worm.gen [McAfee]4
Win-Trojan/Goldun.23667.B [AhnLab]4
Win-Trojan/Goldun.23740 [AhnLab]4
Worm:Win32/Mocmex.gen!A [Microsoft]4
WORM_AUTORUN.AJX [Trend Micro]4
Dropper/Mariofev.45056 [AhnLab]3
Trojan-Downloader.Agent [PC Tools]3
Trojan-Spy.Goldun.BE [PC Tools]3
Trojan-Spy.Goldun.NDU [PC Tools]3
Trojan-Spy.Win32.Goldun.bdj [Kaspersky Lab]3
Trojan-Spy.Win32.Goldun.bgy [Kaspersky Lab]3
Virus.Win32.Agent.SNT [Ikarus]3
Win32.SuspectCrc [Ikarus]3
Win-Trojan/Agent.11264.KL [AhnLab]3
Win-Trojan/Agent.8704.PW [AhnLab]3
WORM_AUTORUN.BKQ [Trend Micro]3
Backdoor.Paproxy [Symantec]2
Downloader.gen.a [McAfee]2
Generic BackDoor [McAfee]2
Infostealer.Bancos [Symantec]2
Mal/Heuri-E, Mal/Emogen-G [Sophos]2
Mal_Banker [Trend Micro]2
New Win32 [McAfee]2
PWS:Win32/Lmir.BMP [Microsoft]2
Troj/Dloadr-BWN [Sophos]2
TROJ_AGENT.ZLN [Trend Micro]2
Trojan.Win32.Agent.clss [Kaspersky Lab]2
Trojan.Win32.Agent.rlb [Kaspersky Lab]2
Trojan:Win32/Malagent [Microsoft]2
Trojan-Downloader.Small!sd6 [PC Tools]2
Trojan-Mailfinder.Win32.Agent.ux [Kaspersky Lab]2
Trojan-Mailfinder.Win32.Agent.xz [Kaspersky Lab]2
Trojan-Proxy.Win32.Agent [Ikarus]2
Trojan-Proxy.Win32.Agent.btm [Kaspersky Lab]2
Trojan-PSW.Win32.Agent.lcc [Kaspersky Lab]2
Trojan-Spy.Win32.Goldun.bun [Kaspersky Lab]2

Mal/TinyDL-T [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China21
Brazil7
Russian Federation4
Egypt1
Republic of Korea1
Sweden1
Yemen1

Mal/TinyDL-T [Sophos] is known to be created as:
%CommonPrograms%\startup\dap32.exe
%ProgramFiles%\cacaoweb\cacaoweb.exe
%ProgramFiles%\ultravpn\bin\vpndht.exe
%ProgramFiles%\webserver\webserver.exe
%ProgramFiles%\websrvx\websrvx.exe
%System%\acer.exe
%System%\acpiz.dll
%System%\aevqgb.dll
%System%\asus.exe
%System%\bndmss.exe
%System%\brastk.exe
%System%\cabpck.dll
%System%\cexplorer.exe
%System%\comine.exe
%System%\ctasys.dll
%System%\ctlsys.dll
%System%\ddrawxt.dll
%System%\eeekp.dll
%System%\ekrewj.dll
%System%\gzipmod.dll
%System%\hinet.dll
%System%\hpstp.dll
%System%\i975gl.dll
%System%\ibodu.dll
%System%\ie_bar.exe
%System%\imod3.dll
%System%\imod9.dll
%System%\iokey.dll
%System%\ipfwrd.dll
%System%\jstdrv.dll
%System%\jxxgmw.dll
%System%\kdytwo.dll
%System%\kryostm.dll
%System%\kvtrwkcc.exe
%System%\mcrwave.dll
%System%\mdhash.dll
%System%\mnpse.dll
%System%\modgzip.dll
%System%\modzlib.dll
%System%\msn.exe
%System%\msxslt2.exe
%System%\mt49hub.dll
%System%\mutemp.exe
%System%\ntpdxt.dll
%System%\oedes.dll
%System%\pcixmm.dll
%System%\pksetexd.exe
%System%\pmod11.dll
%System%\pptpr.dll
%System%\qagxjjv.exe
%System%\ramdmm.dll
%System%\raqmvr.dll
%System%\rbadmm.dll
%System%\rbadzm.dll
%System%\rising.exe
%System%\rksocket.dll
%System%\saifx.dll
%System%\sbfxi.dll
%System%\sbrige.dll
%System%\sebdpp.dll
%System%\semdpp.dll
%System%\snjava.dll
%System%\sphub.dll
%System%\stfilter.dll
%System%\svch0st.exe
%System%\swapdm.dll
%System%\sysinfo.exe
%System%\syslink.dll
%System%\tomto.dll
%System%\update.exe
%System%\utsync.dll
%System%\vmbox2.dll
%System%\vssms32.exe
%System%\winsystem\acrord32.dll
%System%\wrapkm.dll
%System%\wserver.dll
%System%\xjjdiii.exe
%System%\xliftm.dll
%System%\xxop81.dll
%System%\zzop93.dll
%Temp%\active.dll
%Temp%\manun.exe
%Temp%\musd.exe
%Temp%\srazo_1250171677.exe
%Temp%\winnrmj.exe
%Temp%\xinch.exe
%Temp%\zazodin_1250364645.exe
%Temp%\zpskon_1262908677.exe
%Temp%\zpskon_1263318917.exe
%Temp%\zpskon_1263429723.exe
%Temp%\zpskon_1263614794.exe
%Temp%\zpskon_1263805598.exe
%Temp%\zpskon_1264168690.exe
%Temp%\zpskon_1264244264.exe
%Temp%\zpskon_1264459291.exe
%Temp%\zpskon_1264546787.exe
%Temp%\zpskon_1264671709.exe
%Temp%\zpskon_1264802821.exe
%Temp%\zpskon_1264859926.exe
%Temp%\zpskon_1264862954.exe
Notes:
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).