Threat Search: 

ThreatExpert's Statistics for Packed.Generic.243 [Symantec]:

Packed.Generic.243 [Symantec] is also known as:
Threat AliasNumber of Incidents
Packed.Win32.Krap.w [Kaspersky Lab]101
Trojan.Win32.Bredolab [Ikarus]45
Trojan-Downloader.Win32.Bredolab [Ikarus]43
Packed.Win32.Krap [Ikarus]33
Mal/Generic-A [Sophos]32
Mal/BredoPk-B [Sophos]30
Trojan:Win32/Winwebsec [Microsoft]28
PWS:Win32/Zbot.gen!R [Microsoft]23
Generic PWS.ch [McAfee]22
PWS:Win32/Yahoopass.H [Microsoft]20
HeurEngine.MaliciousPacker [PC Tools]18
FakeAlert-WinwebSecurity.gen [McAfee]17
Mal/Bredo-A, Mal/Behav-340 [Sophos]17
Mal/Bredo-A [Sophos]16
Mal/FakeAV-AD [Sophos]15
Bredolab.gen.a [McAfee]14
Mal/EncPk-JX, Mal/Bredo-A, Mal/Behav-340 [Sophos]14
Win-Trojan/Krap.104448.C [AhnLab]14
FakeAlert-DZ [McAfee]12
Email-Worm.Win32.Iksmas.eeq [Kaspersky Lab]10
Mal/EncPk-JX [Sophos]10
Backdoor.Win32.Bredavi [Ikarus]9
Mal/Bredo-A, Mal/BredoPk-B [Sophos]9
Mal/FakeAV-AD, Mal/EncPk-JX [Sophos]9
Possible_Virus [Trend Micro]9
Mal/Bredo-A, Mal/Behav-340, Mal/BredoPk-B [Sophos]8
Mal/Krap-B, Mal/BredoPk-B [Sophos]7
TrojanDropper:Win32/Oficla.A [Microsoft]7
Mal/EncPk-JX, Mal/BredoPk-B [Sophos]6
Trojan:Win32/Glecia.gen!A [Microsoft]6
Win-Trojan/Bredolab.Gen [AhnLab]6
Win-Trojan/Krap.52736.D [AhnLab]6
Mal/Behav-204 [Sophos]4
TrojanSpy:Win32/Bebloh.A [Microsoft]4
Backdoor.Win32.Bredolab [Ikarus]3
Generic PWS.y!ur [McAfee]3
Mal/BredoPk-B, Mal/Krap-B, Mal/BredoPk-B [Sophos]3
Mal/EncPk-JX, Mal/Bredo-A, Mal/Behav-340, Mal/BredoPk-B [Sophos]3
TrojanDownloader:Win32/Harnig.gen!P [Microsoft]3
Backdoor:Win32/Qakbot.gen!A [Microsoft]2
Gen.Packed [Ikarus]2
Generic.dx!eus [McAfee]2
Mal/Behav-340 [Sophos]2
Mal/Bredo-A, Mal/Behav-321 [Sophos]2
Mal/BredoPk-B, Mal/Bredo-A [Sophos]2
Mal/BredoPk-B, Mal/EncPk-JB [Sophos]2
Mal/EncPk-ND, Mal/BredoPk-B, Mal/Krap-B, Mal/BredoPk-B [Sophos]2
PWS:Win32/Zbot.gen!W [Microsoft]2
Spam-Mailbot.p [McAfee]2
Spammer [Ikarus]2
Spammer:Win32/Tedroo.AA [Microsoft]2
Trojan-Downloader.Win32.FraudLoad.wqxw [Kaspersky Lab]2
Trojan-Downloader.Win32.Harnig [Ikarus]2
TrojanDownloader:Win32/Waledac.C [Microsoft]2
Trojan-Spy.Win32.Zbot.aath [Kaspersky Lab]2
Win32/IRCBot.worm.variant [AhnLab]2
Win-Trojan/Fraudload.973906 [AhnLab]2
Backdoor.Bredolab [PC Tools]1
Backdoor.Win32.Bredavi.ada [Kaspersky Lab]1
Backdoor.Win32.Bredavi.ak [Kaspersky Lab]1
Backdoor.Win32.Bredavi.ba [Kaspersky Lab]1
Backdoor.Win32.Bredavi.ho [Kaspersky Lab]1
Backdoor.Win32.Bredavi.o [Kaspersky Lab]1
Backdoor.Win32.Bredavi.r [Kaspersky Lab]1
Backdoor.Win32.Bredavi.s [Kaspersky Lab]1
Backdoor.Win32.Bredolab.aue [Kaspersky Lab]1
Backdoor.Win32.Bredolab.bi [Kaspersky Lab]1
Backdoor.Win32.Bredolab.eh [Kaspersky Lab]1
Backdoor.Win32.Bredolab.em [Kaspersky Lab]1
Backdoor.Win32.Bredolab.ez [Kaspersky Lab]1
Backdoor.Win32.Bredolab.hy [Kaspersky Lab]1
Backdoor.Win32.Bredolab.ic [Kaspersky Lab]1
Backdoor.Win32.Bredolab.it [Kaspersky Lab]1
Backdoor.Win32.Bredolab.iw [Kaspersky Lab]1
Backdoor.Win32.Bredolab.jd [Kaspersky Lab]1
Backdoor.Win32.Bredolab.jh [Kaspersky Lab]1
Backdoor.Win32.Bredolab.jj [Kaspersky Lab]1
Backdoor.Win32.Bredolab.kg [Kaspersky Lab]1
Backdoor.Win32.Bredolab.kh [Kaspersky Lab]1
Backdoor.Win32.Bredolab.lt [Kaspersky Lab]1
Backdoor.Win32.Bredolab.mj [Kaspersky Lab]1
Backdoor.Win32.Bredolab.mw [Kaspersky Lab]1
Backdoor.Win32.Bredolab.nm [Kaspersky Lab]1
Backdoor.Win32.Bredolab.nt [Kaspersky Lab]1
Backdoor.Win32.Bredolab.nu [Kaspersky Lab]1
Backdoor.Win32.Bredolab.nz [Kaspersky Lab]1
Backdoor.Win32.Bredolab.or [Kaspersky Lab]1
Backdoor.Win32.Bredolab.pu [Kaspersky Lab]1
Backdoor.Win32.Bredolab.qv [Kaspersky Lab]1
Backdoor.Win32.Bredolab.tg [Kaspersky Lab]1
Backdoor.Win32.Bredolab.uz [Kaspersky Lab]1
Backdoor.Win32.Bredolab.vx [Kaspersky Lab]1
Backdoor.Win32.Bredolab.yp [Kaspersky Lab]1
Backdoor.Win32.KeyStart.dn [Kaspersky Lab]1
Backdoor.Win32.Qakbot [Ikarus]1
Bredolab.gen.h [McAfee]1
Cecapix [McAfee]1
Email-Worm.Win32.Joleee.bed [Kaspersky Lab]1
Email-Worm.Win32.Joleee.dho [Kaspersky Lab]1
Generic BackDoor!bbe [McAfee]1

Packed.Generic.243 [Symantec] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation183
Taiwan3
Spain2

Packed.Generic.243 [Symantec] is known to be created as:
%CommonAppData%\11135934\11135934.exe
%CommonAppData%\11143754\11143754.exe
%CommonAppData%\11628124\11628124.exe
%CommonAppData%\11702034\11702034.exe
%CommonAppData%\11756874\11756874.exe
%CommonAppData%\11762504\11762504.exe
%CommonAppData%\11772654\11772654.exe
%CommonAppData%\11906874\11906874.exe
%CommonAppData%\11913434\11913434.exe
%CommonAppData%\11946404\11946404.exe
%CommonAppData%\11947654\11947654.exe
%CommonAppData%\11963434\11963434.exe
%CommonAppData%\12118754\12118754.exe
%CommonAppData%\12149684\12149684.exe
%CommonAppData%\12154684\12154684.exe
%CommonAppData%\12155314\12155314.exe
%CommonAppData%\12157814\12157814.exe
%CommonAppData%\12174684\12174684.exe
%CommonAppData%\12182344\12182344.exe
%CommonAppData%\12359844\12359844.exe
%CommonAppData%\12363284\12363284.exe
%CommonAppData%\12366094\12366094.exe
%CommonAppData%\17031254\17031254.exe
%CommonAppData%\17057504\17057504.exe
%CommonAppData%\17069534\17069534.exe
%CommonAppData%\17242814\17242814.exe
%CommonAppData%\17245464\17245464.exe
%CommonAppData%\17446564\17446564.exe
%CommonAppData%\17468284\17468284.exe
%CommonAppData%\microsoft\shortcuts\icwsetup.exe
%ProgramFiles%\internet explorer\connection wizard\icwsetup.exe
%Programs%\startup\dfqupd32.exe
%Programs%\startup\isqsys32.exe
%Programs%\startup\rqjupd32.exe
%System%\logon.exe
%System%\mssrv32.exe
%System%\sdra64.exe
%System%\servises.exe
%System%\wbem\proquota.exe
%Temp%\_ex-68.exe
%Temp%\e.exe
%Temp%\ss.exe
%Windir%\services.exe
%Windir%\temp\_ex-08.exe
%Windir%\temp\wpv021256600826.exe
%Windir%\temp\wpv111251459151.exe
%Windir%\temp\wpv181248050836.exe
%Windir%\temp\wpv201256600826.exe
%Windir%\temp\wpv471248050836.exe
%Windir%\temp\wpv601251296984.exe
%Windir%\temp\wpv701256600826.exe
%Windir%\temp\wpv821251296984.exe
%Windir%\temp\wpv951251296984.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.