Threat Search: 

ThreatExpert's Statistics for Packed.Generic.234 [Symantec]:

Packed.Generic.234 [Symantec] is also known as:
Threat AliasNumber of Incidents
Trojan:Win32/Winwebsec [Microsoft]37
FakeAlert-WinwebSecurity.a [McAfee]27
Mal/FakeAV-AX [Sophos]19
Trojan.Win32.Winwebsec [Ikarus]11
Trojan.FakeAlert [PC Tools]9
Mal/FakeAV-AX, Mal/FakeAV-AE [Sophos]7
Mal/Generic-A [Sophos]7
PWS:Win32/Zbot.gen!R [Microsoft]7
HeurEngine.MaliciousPacker [PC Tools]6
Win32/IRCBot.worm.variant [AhnLab]6
FakeAlert-DZ [McAfee]5
FakeAlert-WinwebSecurity.gen [McAfee]5
TrojanSpy:Win32/Ursnif.gen!G [Microsoft]5
Mal/WaledPak-B [Sophos]4
Trojan-Spy.Win32.Zbot.xyo [Kaspersky Lab]4
Mal/FakeAV-AE, Mal/FakeAV-AX [Sophos]3
Trojan.Crypt [Ikarus]3
Trojan-Downloader.Win32.FraudLoad [Ikarus]3
Trojan-Dropper.Win32.Agent.atmg [Kaspersky Lab]3
Trojan-Spy.Win32.Ursnif [Ikarus]3
FakeAlert-DX [McAfee]2
Mal/FakeAV-AX, Mal/EncPk-MX [Sophos]2
not-a-virus:FraudTool.Win32.SystemSecurity.nr [Kaspersky Lab]2
RogueAntiSpyware.System Security [PC Tools]2
Trojan-Downloader.Win32.Cutwail [Ikarus]2
Trojan-Downloader.Win32.FraudLoad.wbyw [Kaspersky Lab]2
Trojan-Downloader.Win32.FraudLoad.wcfd [Kaspersky Lab]2
Trojan-Downloader.Win32.FraudLoad.wcfw [Kaspersky Lab]2
Trojan-Downloader.Win32.FraudLoad.wchv [Kaspersky Lab]2
Trojan-Downloader.Win32.Suurch.adm [Kaspersky Lab]2
TrojanDownloader:Win32/Cutwail.gen!C [Microsoft]2
Trojan-Spy.Win32.Zbot.xvq [Kaspersky Lab]2
Win-Trojan/Fakeav.355901 [AhnLab]2
Win-Trojan/Suurch.38916 [AhnLab]2
Backdoor.Win32.Bredolab.ca [Kaspersky Lab]1
Backdoor.Win32.HareBot.ee [Kaspersky Lab]1
Backdoor.Win32.Small.uw [Kaspersky Lab]1
Cutwail [McAfee]1
Dropper/Agent.537911.B [AhnLab]1
Dropper/Agent.538430.B [AhnLab]1
Generic Downloader.x!gl [McAfee]1
Generic Downloader.x!po [McAfee]1
Generic PWS.y!cy [McAfee]1
Generic PWS.y!dt [McAfee]1
Generic PWS.y!fr [McAfee]1
Generic.dx!of [McAfee]1
Mal/EncPk-MX, Mal/FakeAV-AX, Mal/FakeAV-AE [Sophos]1
Mal/FakeAV-AE, Mal/FakeAV-AX, Mal/FakeAV-AD [Sophos]1
Mal/FakeAV-AE, Mal/FakeAV-CB, Mal/FakeAV-AX, Mal/FakeAV-AD [Sophos]1
Mal/FakeAV-AX, Mal/EncPk-MX, Mal/WaledPak-B [Sophos]1
Mal/FakeAV-AX, Mal/FakeAV-AD, Mal/FakeAV-AE [Sophos]1
Mal/FakeAV-AX, Mal/FakeAV-AE, Mal/FakeAV-AD [Sophos]1
not-a-virus:FraudTool.Win32.SystemSecurity.ns [Kaspersky Lab]1
PWS.Win32 [Ikarus]1
Spam-Mailbot [McAfee]1
Troj/FakeAV-VB [Sophos]1
Troj/FakeAV-VQ [Sophos]1
Trojan.Win32.Agent [Ikarus]1
Trojan.Win32.Agent.ckdl [Kaspersky Lab]1
Trojan.Win32.Agent2 [Ikarus]1
Trojan.Win32.Agent2.cgop [Kaspersky Lab]1
Trojan.Win32.Agent2.kwq [Kaspersky Lab]1
Trojan.Win32.FakeAV [Ikarus]1
Trojan.Win32.FraudPack.omv [Kaspersky Lab]1
Trojan.Win32.Rabbit.je [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vwoh [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.vwrh [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wbrs [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wbwy [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wccf [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wcch [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wchq [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wchr [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wchx [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wcjx [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wckb [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.weey [Kaspersky Lab]1
Trojan-Downloader.Win32.FraudLoad.wnfj [Kaspersky Lab]1
Trojan-Downloader.Win32.Suurch [Ikarus]1
TrojanDownloader:Win32/Cutwail.AI [Microsoft]1
TrojanDownloader:Win32/Cutwail.gen!B [Microsoft]1
Trojan-Spy.Ursnif [Ikarus]1
Trojan-Spy.Win32.Zbot [Ikarus]1
Win-Trojan/Bredolab.34816 [AhnLab]1
Win-Trojan/Downloader.35840.EJ [AhnLab]1
Win-Trojan/Downloader.52737 [AhnLab]1
Win-Trojan/Fakeav.465207 [AhnLab]1
Win-Trojan/Fraudload.368674.D [AhnLab]1
Win-Trojan/Fraudload.368684 [AhnLab]1
Win-Trojan/Fraudload.369196 [AhnLab]1
Win-Trojan/Fraudload.47148.AD [AhnLab]1
Win-Trojan/Fraudload.47148.J [AhnLab]1
Win-Trojan/Fraudpack.368767 [AhnLab]1
Win-Trojan/Haiuy.59392 [AhnLab]1
Win-Trojan/Winwebsec.355884 [AhnLab]1
Win-Trojan/Winwebsec.37420 [AhnLab]1

Packed.Generic.234 [Symantec] is known to be created as:
%CommonAppData%\11131564\11131564.exe
%CommonAppData%\11141874\11141874.exe
%CommonAppData%\11160154\11160154.exe
%CommonAppData%\12903284\12903284.exe
%CommonAppData%\12917034\12917034.exe
%CommonAppData%\13106404\13106404.exe
%CommonAppData%\13110624\13110624.exe
%CommonAppData%\13115934\13115934.exe
%CommonAppData%\91141556\91141556.exe
%CommonAppData%\91151866\91151866.exe
%CommonAppData%\91170146\91170146.exe
%CommonAppData%\92913276\92913276.exe
%CommonAppData%\92927026\92927026.exe
%CommonAppData%\93125926\93125926.exe
%System%\ms18_word.exe
%System%\reader_s.exe
%System%\sdra64.exe
%Temp%\install.exe
%Temp%\lsass.exe
%Temp%\services.exe
%Temp%\setup.exe
%Temp%\smss.exe
%Temp%\taskmgr.exe
%Temp%\winamp.exe
%Temp%\winlogon.exe
%UserProfile%\ms18_word.exe
%UserProfile%\reader_s.exe
%Windir%\9129837.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.