Threat Search: 

ThreatExpert's Statistics for not-a-virus:AdWare.Win32.Agent [Ikarus]:

not-a-virus:AdWare.Win32.Agent [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan.Adclicker [Symantec]478
Adware.Agent!sd5 [PC Tools]476
Generic.dx [McAfee]465
TROJ_WANTVI.E [Trend Micro]456
not-a-virus:AdWare.Win32.Agent.zo [Kaspersky Lab]42
not-a-virus:AdWare.Win32.Agent.pgv [Kaspersky Lab]40
Troj/Agent-INK [Sophos]37
Generic PUP.x [McAfee]36
Backdoor.Trojan [Symantec]31
Troj/Agent-GPD [Sophos]30
Trojan Horse [Symantec]30
Adware.Agent!sd6 [PC Tools]28
Downloader [Symantec]25
TROJ_DLOADER.KA [Trend Micro]19
Generic PUP.z!ba [McAfee]18
not-a-virus:AdWare.Win32.Agent.hyx [Kaspersky Lab]18
not-a-virus:AdWare.Win32.Agent.hyy [Kaspersky Lab]18
Trojan.Win32.BHO [Ikarus]18
Adware.Agent.ZO [PC Tools]16
Trojan:Win32/BHO.AH [Microsoft]15
Trojan:Win32/BHO.AI [Microsoft]15
Generic Downloader.ab [McAfee]11
Trojan:Win32/Vundo.gen!F [Microsoft]10
Mal/Generic-A [Sophos]9
not-a-virus:AdWare.Win32.Agent.bm [Kaspersky Lab]8
Adware.Agent.TVV [PC Tools]7
Win-Trojan/Agent.53248.TZ [AhnLab]7
AdClicker-HQ [McAfee]6
not-a-virus:AdWare.Win32.Agent.lq [Kaspersky Lab]6
Win-Trojan/Agent.94208.NL [AhnLab]6
Adware.SoduiSearch [PC Tools]5
Adware.Gen [Symantec]4
Adware.Maxifiles [PC Tools]4
Adware.Soduisearch [Symantec]4
Generic PUP.x!g [McAfee]4
Generic.dx!nf [McAfee]4
Generic.dx!zo [McAfee]4
not-a-virus:AdWare.Win32.Agent.mnd [Kaspersky Lab]4
Win-Trojan/Agent.53248.TW [AhnLab]4
Win-Trojan/Xema.variant [AhnLab]4
Backdoor.Bifrose [Symantec]3
not-a-virus:AdWare.Win32.Agent.bz [Kaspersky Lab]3
not-a-virus:AdWare.Win32.Agent.y [Kaspersky Lab]3
Troj/Dload-V [Sophos]3
Trojan-Downloader.Win32.VB.qjt [Kaspersky Lab]3
Adware.Agent.WUP [PC Tools]2
Generic.fh [McAfee]2
Mal/EncPk-FH [Sophos]2
not-a-virus:AdWare.Win32.Agent.ck [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Agent.ed [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Agent.lmz [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Agent.sr [Kaspersky Lab]2
Suspicious.MH690 [Symantec]2
Trojan.BAT.Agent.sl [Kaspersky Lab]2
Trojan.Win32.Agent.afht [Kaspersky Lab]2
Trojan.Win32.Kilva [Ikarus]2
Trojan-Downloader.Win32.Lipler.fhh [Kaspersky Lab]2
TrojanDownloader:Win32/Small [Microsoft]2
TrojanDownloader:Win32/Wintrim.BX [Microsoft]2
Adware.Agent.UJP [PC Tools]1
Adware.Agent.WDO [PC Tools]1
AdWare.Agent.XPK [PC Tools]1
Adware.CashOn [Symantec]1
Adware.Gen [PC Tools]1
Adware:Win32/Playmp3z [Microsoft]1
Adware-cashon [McAfee]1
Adware-Newweb [McAfee]1
Backdoor.Haxdoor [Symantec]1
Backdoor.Win32.Haxdoor.d [Kaspersky Lab]1
Backdoor:Win32/Agent.CQ [Microsoft]1
Backdoor:Win32/Bifrose.AE [Microsoft]1
Backdoor:Win32/Haxdoor.D [Microsoft]1
BackDoor-BAC [McAfee]1
BackDoor-CEP.gen.a [McAfee]1
BKDR_AHZE.NY [Trend Micro]1
BKDR_HAXDOOR.D [Trend Micro]1
BrowserModifier:Win32/CashOn [Microsoft]1
Generic Adware.a [McAfee]1
Generic Downloader.x!fv [McAfee]1
Generic Downloader.x!gy [McAfee]1
Generic Downloader.z [McAfee]1
Generic PUP.x!bk [McAfee]1
Generic PUP.x!br [McAfee]1
Generic PUP.x!c [McAfee]1
Generic PUP.x!ct [McAfee]1
Generic PUP.x!cv [McAfee]1
Generic PUP.z [McAfee]1
Hacktool.Rootkit [Symantec]1
Mal/Emogen-P [Sophos]1
New Win32 [McAfee]1
not-a-virus:AdWare.Win32.Agent.acu [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.cbj [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.ekj [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.hyz [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.mat [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.mbh [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.mhw [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.osy [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.qbc [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Agent.qbk [Kaspersky Lab]1

not-a-virus:AdWare.Win32.Agent [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China10
Republic of Korea9
Australia1
Canada1
Israel1
Russian Federation1
Sweden1

not-a-virus:AdWare.Win32.Agent [Ikarus] is known to be created as:
%AppData%\outlook express\oeimport.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\gtsrp\gtsrp.exe
%ProgramFiles%\peoplepc\toolbar\ppctoolbar.dll
%ProgramFiles%\searchwanner\13532.exe
%ProgramFiles%\tencent\adplus\scrax.dll
%ProgramFiles%\ultimateadvisor\ultimateadvisor-1.dll
%ProgramFiles%\webmediaplayer\uninst.exe
%ProgramFiles%\yavkxoj\yavkxoj.dll
%System%\app.exe
%System%\bnitsaps\ifbyv.dll
%System%\bnitsaps\pmjfc.dll
%System%\directory lister\dirlister.exe
%System%\drivers\nywilh93.sys
%System%\drivers\zqfsmo96.sys
%System%\eptrayutil.dll
%System%\iconhandle.dll
%System%\mprexe.exe
%System%\msbdserver\byvro.dll
%System%\msbdserver\dzwqm.dll
%System%\msbdserver\tqmjg.dll
%System%\msbdserver\zwtpm.dll
%System%\niuniu4.dll
%System%\nywilh93.dll
%System%\skipxbar.dll
%System%\webad.dll
%System%\win32\win32.exe
%System%\winilh93.dll
%System%\winsmo96.dll
%System%\wintks.com
%System%\winweb.exe
%System%\zqfsmo96.dll
%Temp%\messenger\stab.dll
%Temp%\nsv3.tmp\setup_qq.exe
%Temp%\ot_luncher_oneshot_s1059.exe
%Windir%\autoupdatewin31.dll
%Windir%\autoupdatewin32.exe
%Windir%\autoupdatewin33.exe
%Windir%\mobi\app.exe
%Windir%\mplayerplgn.dll
%Windir%\niuniu4.dll
%Windir%\qaz\qaz.exe
%Windir%\sex.exe
%Windir%\windowsupdates.exe
c:\svchost.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.