Threat Search: 

ThreatExpert's Statistics for Packed.Generic.200 [Symantec]:

Packed.Generic.200 [Symantec] is also known as:
Threat AliasNumber of Incidents
Trojan:Win32/Alureon.gen!J [Microsoft]207
Rootkit.Win32.TDSS [Ikarus]120
Virus.Win32.Fasec [Ikarus]99
Packed.Win32.Tdss.f [Kaspersky Lab]98
DNSChanger.r [McAfee]93
Rootkit.Win32.TDSS.eyj [Kaspersky Lab]78
Packed.Win32.Tdss.c [Kaspersky Lab]77
Win-Trojan/Xema.variant [AhnLab]72
DNSChanger.f.gen.a [McAfee]67
Trojan.Win32.InternetAntivirus [Ikarus]67
Trojan:Win32/Alureon.gen [Microsoft]59
Generic FakeAlert.k [McAfee]56
Trojan.TDss.1 [Ikarus]55
Trojan-Downloader.Win32.Renos.AQ [Ikarus]55
TrojanDownloader:Win32/Rugzip.A [Microsoft]49
Mal/TDSS-A [Sophos]48
Mal/Generic-A [Sophos]42
Mal/Alureon-C [Sophos]40
Mal/FakeVirPk-A [Sophos]40
Trojan:Win32/FakeSpyguard [Microsoft]40
Trojan.Win32.Alureon [Ikarus]37
Mal/TDSS-A, Mal/EncPk-CZ [Sophos]34
Trojan:Win32/InternetAntivirus [Microsoft]33
DNSChanger.gen [McAfee]32
Packed.Win32.Tdss.a [Kaspersky Lab]31
Mal/Alureon-C, Mal/FakeVirPk-A [Sophos]30
Mal/FakeVirPk-A, Mal/EncPk-CZ [Sophos]30
Trojan.Win32.FakeSpyguard [Ikarus]25
Mal/EncPk-CZ [Sophos]24
Mal/EncPk-GR, Mal/EncPk-GR [Sophos]24
Worm.Win32.AutoTDSS [Ikarus]23
FakeAlert-SpywareGuard.gen.b [McAfee]21
Generic.dx [McAfee]19
Trojan:Win32/Sudiet.B [Microsoft]19
Trojan:Win32/Alureon.BH [Microsoft]18
FakeAlert-AG.gen.a [McAfee]17
Generic FakeAlert.h [McAfee]17
Mal/TDSSPack-A [Sophos]17
Trojan:Win32/Alureon.gen!T [Microsoft]17
Packed.Win32.Tdss.m [Kaspersky Lab]16
Packed.Win32.TDSS.y [Kaspersky Lab]16
TrojanSpy:Win32/Chadem.A [Microsoft]16
TrojanDownloader:Win32/FakeIA.A [Microsoft]15
Trojan.TDss [Ikarus]14
DNSChanger!x [McAfee]13
Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S [Sophos]13
Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos]13
Mal/FakeVirPk-A, Mal/TDSS-A [Sophos]13
HeurEngine.MaliciousPacker [PC Tools]12
Packed.Win32.Tdss [Ikarus]11
Packed.Win32.Tdss.e [Kaspersky Lab]11
Trojan:Win32/Alureon.BG [Microsoft]11
Trojan:Win32/Vundo.JC.dll [Microsoft]11
Mal/TDSSPack-E [Sophos]10
Rootkit.TDSS!sd6 [PC Tools]10
Trojan.Win32.TDSS.amwo [Kaspersky Lab]10
Trojan:Win32/Alureon.gen!U [Microsoft]10
Packed.Win32.Tdss.h [Kaspersky Lab]9
Trojan:Win32/Alureon.gen!Q [Microsoft]8
TrojanDownloader:Win32/Renos.gen!BC [Microsoft]8
Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos]7
Packed.Win32.Tdss.d [Kaspersky Lab]7
Trojan.Fakeav.1 [Ikarus]7
TrojanDropper:Win32/Kryptik.B [Microsoft]7
DNSChanger!bi [McAfee]6
Mal/TDSSPack-E, Mal/Alureon-C [Sophos]6
Mal/TDSSPack-J [Sophos]6
Mal/TDSSPack-Q, Mal/TDSSPack-A [Sophos]6
Program:Win32/FakeWG.A [Microsoft]6
Troj/Agent-IPD [Sophos]6
Trojan:Win32/Witer.B [Microsoft]6
Generic FakeAlert.c [McAfee]5
Generic PWS.y [McAfee]5
Mal/EncPk-GR, Mal/EncPk-GR, Mal/TDSSPack-E [Sophos]5
Mal/TDSSPack-A, Mal/TDSSPack-E, Troj/Virtum-Gen [Sophos]5
Mal/TDSSPack-L [Sophos]5
Mal/TDSSPack-L, Mal/TDSSPack-K [Sophos]5
Mal/TDSSPack-L, Mal/TDSSPack-K, Mal/TDSSPack-J, Mal/TDSSPack-E [Sophos]5
Mal/TDSSPack-R, Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos]5
Rootkit.Win32.TDSS.gxu [Kaspersky Lab]5
Trojan.Win32.TDSS.alno [Kaspersky Lab]5
Trojan:Win32/Alureon.gen!C [Microsoft]5
Backdoor.Win32.TDSS [Ikarus]4
Backdoor.Win32.TDSS.awp [Kaspersky Lab]4
DNSChanger.f.gen.b [McAfee]4
Generic Downloader.x [McAfee]4
Generic Obfuscated.a [McAfee]4
Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos]4
Mal/Alureon-C, Mal/FakeVirPk-A, Troj/Virtum-Gen [Sophos]4
Mal/Behav-321, Mal/TDSS-A [Sophos]4
Mal/FakeAV-AD [Sophos]4
Mal/TDSS-A, Mal/FakeVirPk-A [Sophos]4
Mal/UnkPack-Fam [Sophos]4
Packed.Win32.Krap.d [Kaspersky Lab]4
Rootkit.Win32.TDSS.cnk [Kaspersky Lab]4
Trojan.Win32.Agent.bknk [Kaspersky Lab]4
Trojan.Win32.TDSS.abiu [Kaspersky Lab]4
Virus.Win32.Rootkit [Ikarus]4
Win-Trojan/Agent.56320.CM [AhnLab]4
FakeAlert-CT [McAfee]3

Packed.Generic.200 [Symantec] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation63
Ukraine2

Packed.Generic.200 [Symantec] is known to be created as:
%AppData%\microsoft\windows\winlogon.exe
%CommonAppData%\svhost.exe
%ProgramFiles%\internet antivirus pro\iapro.exe
%ProgramFiles%\malware defender 2009\malwaredef.exe
%ProgramFiles%\malware defender 2009\uninstall.exe
%ProgramFiles%\spyware guard 2008\uninstall.exe
%ProgramFiles%\system guard 2009\uninstall.exe
%System%\1.exe
%System%\blphc35dj0erc1.scr
%System%\dgmoeqh.dll
%System%\kdbox.exe
%System%\kddgp.exe
%System%\kdech.exe
%System%\kdeln.exe
%System%\kdenh.exe
%System%\kdfjr.exe
%System%\kdfln.exe
%System%\kdfnh.exe
%System%\kdfwd.exe
%System%\kdgfk.exe
%System%\kdgvz.exe
%System%\kdgzy.exe
%System%\kdhsx.exe
%System%\kdidf.exe
%System%\kdiqc.exe
%System%\kdius.exe
%System%\kdjdx.exe
%System%\kdjjk.exe
%System%\kdjlv.exe
%System%\kdjqc.exe
%System%\kdjrf.exe
%System%\kdkxu.exe
%System%\kdlsf.exe
%System%\kdmpu.exe
%System%\kdmsx.exe
%System%\kdozp.exe
%System%\kdpdw.exe
%System%\kdppg.exe
%System%\kdpvv.exe
%System%\kdqrh.exe
%System%\kdrnz.exe
%System%\kdryz.exe
%System%\kdufr.exe
%System%\kduns.exe
%System%\kduzx.exe
%System%\kdvah.exe
%System%\kdwau.exe
%System%\kdwfk.exe
%System%\kdxja.exe
%System%\kdxmc.exe
%System%\kdyim.exe
%System%\kdysv.exe
%System%\kdyvf.exe
%System%\lphc35dj0erc1.exe
%System%\senekaaelyvfva.dll
%System%\senekabiysufkk.dll
%System%\senekabpqxxnos.dll
%System%\senekadbyuscvn.dll
%System%\senekaelbqfoow.dll
%System%\senekagambcjpe.dll
%System%\senekagvrchxfy.dll
%System%\senekaiylbjlxi.dll
%System%\senekakbkuktqs.dll
%System%\senekakorduymb.dll
%System%\senekalkbevyic.dll
%System%\senekamiqufjpy.dll
%System%\senekapdkswqwe.dll
%System%\senekapkrlnsyt.dll
%System%\senekapxywyksp.dll
%System%\senekasftdcbrq.dll
%System%\senekasvthfger.dll
%System%\senekauetqxtiq.dll
%System%\senekavivximpc.dll
%System%\senekaxeqcxnqv.dll
%System%\senekayxmaeorc.dll
%System%\uacagxvnnqb.dll
%System%\uacgbeqmiwk.dll
%System%\uacpylxbwqj.dll
%System%\uacsiuxnqvm.dll
%System%\uactpuxouob.dll
%System%\uacuyagesjqdsktqxt.dll
%System%\wcenter.exe
%System%\winscenter.exe
%Temp%\agaopdxobaybomk.dll
%Temp%\bootmatrix.exe
%Temp%\d.dll
%Temp%\file.exe
%Temp%\gaopdxyqvxsbxh.dll
%Temp%\jah35651.exe
%Temp%\ma_r.exe
%Temp%\ma_v.exe
%Temp%\setup.exe
%UserProfile%\kqspipgegv.exe
%Windir%\codecbeta.exe
c:\resycled\boot.com
c:\resycled\ntldr.com
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.