Threat Search: 

ThreatExpert's Statistics for Packed.Win32.Krap [Ikarus]:

Packed.Win32.Krap [Ikarus] is also known as:
Threat AliasNumber of Incidents
Packed.Win32.Krap.ah [Kaspersky Lab]1,035
Infostealer [Symantec]810
Mal/EncPk-MA, Mal/FakeDouf-B [Sophos]527
Trojan-PSW.Generic [PC Tools]475
Generic PWS.ak [McAfee]342
Trojan:Win32/Opachki.A [Microsoft]340
Mal/Generic-A [Sophos]325
Packed.Win32.Krap.b [Kaspersky Lab]322
Trojan Horse [Symantec]276
Mal/EncPk-LT, Mal/FakeAV-BX, Mal/FakeDouf-B, Mal/EncPk-MA [Sophos]222
Trojan.Packed.NsAnti [Symantec]201
Troj/Virtum-Gen [Sophos]188
Packed.Win32.Krap.x [Kaspersky Lab]183
Packed.Generic.265 [Symantec]180
Troj/Agent-LPF [Sophos]169
Trojan:Win32/Novcod.A [Microsoft]169
PWS:Win32/Frethog.gen!B [Microsoft]148
Worm:Win32/Taterf.B [Microsoft]114
Packed.Win32.Krap.g [Kaspersky Lab]110
TrojanDownloader:Win32/Frethog.C [Microsoft]105
W32.Gammima.AG [Symantec]102
Infostealer.Gampass [Symantec]100
Downloader [Symantec]87
Win-Trojan/MalPacked.Gen [AhnLab]74
Packed.Win32.Krap.w [Kaspersky Lab]72
PWS-Gamania.gen.a [McAfee]61
PWS:Win32/Frethog.D [Microsoft]60
Generic Downloader.x!btg [McAfee]50
Troj/Dldr-CG [Sophos]49
Mal/Frethog-B [Sophos]48
Win-Trojan/Krap.15000.E [AhnLab]42
Trojan.Generic [PC Tools]40
PWS-Gamania.gen.c [McAfee]39
HeurEngine.MaliciousPacker [PC Tools]38
PWS-Gamania.gen.g [McAfee]36
TrojanDownloader:Win32/Injector.gen!W [Microsoft]35
Packed.Generic.243 [Symantec]33
PWS:Win32/Frethog.MN [Microsoft]32
Trojan:Win32/Malagent [Microsoft]31
Win-Trojan/Xema.variant [AhnLab]31
Trojan:Win32/Inhoo.A [Microsoft]30
Mal/EncPk-IG, Mal/EncPk-HI [Sophos]29
Packed.Win32.Krap.i [Kaspersky Lab]29
Packed.Win32.Krap.af [Kaspersky Lab]28
Packed.Win32.Krap.ai [Kaspersky Lab]28
Trojan:Win32/Ertfor.C [Microsoft]28
Packed.Win32.Krap.z [Kaspersky Lab]27
Generic Downloader.x [McAfee]26
Mal/EncPk-CE [Sophos]26
Packed.Win32.Krap.ag [Kaspersky Lab]26
Packed.Win32.Krap.m [Kaspersky Lab]26
Packed.Win32.Krap.c [Kaspersky Lab]25
Win-Trojan/Krap.51200.BZ [AhnLab]25
W32.Gammima [Symantec]24
Backdoor:Win32/Bifrose.EY [Microsoft]23
Mal/EncPk-IE [Sophos]23
Mal/Generic-A, Troj/Virtum-Gen [Sophos]22
Packed.Win32.Krap.k [Kaspersky Lab]22
Troj/PWSDle-Gen [Sophos]22
Trojan.Agent.qefi [PC Tools]21
Trojan.Lineage.Gen!Pac.3 [PC Tools]21
TrojanDownloader:Win32/IEInject.gen!A [Microsoft]21
Mal/Rimecud-A, Mal/Zbot-I [Sophos]20
Trojan.Zbot [PC Tools]20
W32/Autorun-YW [Sophos]20
Mal/EncPk-GT [Sophos]19
PWS:Win32/Zbot.gen!R [Microsoft]19
PWS-Banker.dll [McAfee]19
Trojan.Zbot!gen3 [Symantec]19
TrojanDownloader:Win32/Small.gen!AA [Microsoft]19
TrojanDownloader:Win32/Bredolab.B [Microsoft]17
Generic Downloader.z [McAfee]16
Generic.dx [McAfee]16
Mal/UnkPack-Fam [Sophos]16
Trojan-Spy.Gampass!sd6 [PC Tools]16
Trojan-Spy.Win32.Zbot.gen [Kaspersky Lab]16
HeurEngine.Waledac [PC Tools]15
W32.Waledac [Symantec]14
Mal/EncPk-HI [Sophos]13
Mal/EncPk-IG [Sophos]13
Mal/FakeAV-AD [Sophos]13
Mal/FakeDouf-B [Sophos]13
DNSChanger.f.gen.a [McAfee]12
Packed.Win32.Krap.ae [Kaspersky Lab]12
Adware:Win32/IEHlpr [Microsoft]11
Backdoor.Tidserv [Symantec]11
Backdoor.Trojan [Symantec]11
Mal/TDSS-A, Mal/EncPk-CZ [Sophos]11
Mal/WaledPak-A [Sophos]11
Packed.Win32.Krap.d [Kaspersky Lab]11
Downloader.Generic [PC Tools]10
FakeAlert-DZ [McAfee]10
Mal/EncPk-IE, Mal/EncPk-IG [Sophos]10
PWS:Win32/Yahoopass.H [Microsoft]10
PWS-Mmorpg.gen [McAfee]10
Trojan.Vundo [Symantec]10
Trojan-PWS.OnlineGames.ARUN [PC Tools]10
Backdoor:Win32/Poisonivy.gen!A [Microsoft]9
Downloader-BWS [McAfee]9
Generic PWS.ch [McAfee]9

Packed.Win32.Krap [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation155
China92
Taiwan13
Sweden4
Germany1
Saudi Arabia1
United Kingdom1

Packed.Win32.Krap [Ikarus] is known to be created as:
%AppData%\9103032885\9103032885.exe
%AppData%\bleerk\ylersysguard.exe
%AppData%\ktbrtbsacs.dll
%AppData%\nqunda\ibmysysguard.exe
%AppData%\pceafd\mbxmsysguard.exe
%AppData%\qkiiou\cysusftav.exe
%AppData%\seres.exe
%AppData%\svcst.exe
%CommonAppData%\03777327\03777327.exe
%CommonAppData%\11143754\11143754.exe
%CommonAppData%\11628124\11628124.exe
%CommonAppData%\12155314\12155314.exe
%CommonAppData%\12174684\12174684.exe
%CommonAppData%\13334822\13334822.exe
%CommonAppData%\14331012\14331012.exe
%CommonAppData%\27175325\27175325.exe
%CommonAppData%\34443624\34443624.exe
%CommonAppData%\42095323\42095323.exe
%CommonAppData%\42430215\42430215.exe
%CommonAppData%\45381627\45381627.exe
%CommonAppData%\46321319\46321319.exe
%CommonAppData%\54756633\54756633.exe
%CommonAppData%\59259232\59259232.exe
%CommonAppData%\61642524\61642524.exe
%CommonAppData%\74270626\74270626.exe
%CommonAppData%\75998341\75998341.exe
%CommonAppData%\79952335\79952335.exe
%CommonAppData%\82513928\82513928.exe
%CommonAppData%\92608631\92608631.exe
%CommonAppData%\94527431\94527431.exe
%CommonAppData%\99834336\99834336.exe
%CommonAppData%\microsoft\vmonitor.exe
%Profiles%\localservice\ntuser.dll
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\common files\system\ieupdates.exe
%ProgramFiles%\install.exe
%ProgramFiles%\internet explorer\connection wizard\icwsetup.exe
%ProgramFiles%\msn\msn.exe
%ProgramFiles%\start.exe
%Programs%\startup\mgjwin32.exe
%Programs%\startup\rarype32.exe
%Programs%\startup\scandisk.dll
%Programs%\startup\ysfsys32.exe
%System%\4tddfwq0.dll
%System%\4tddfwq1.dll
%System%\afmain0.dll
%System%\amvo.exe
%System%\amvo0.dll
%System%\amvo1.dll
%System%\amvo2.dll
%System%\bgotrtu0.dll
%System%\bgotrtu1.dll
%System%\bifrost\server.exe
%System%\bitkv0.dll
%System%\bootvid.exe
%System%\calc.dll
%System%\cao220.dll
%System%\cao221.dll
%System%\ciuytr0.dll
%System%\ciuytr1.dll
%System%\ciuytr2.dll
%System%\ckvo.exe
%System%\ckvo0.dll
%System%\ckvo1.dll
%System%\ckvo2.dll
%System%\ddcdssph.dll
%System%\dgmoeqh.dll
%System%\digeste.dll
%System%\digiwet.dll
%System%\dse235rgd0.dll
%System%\dse235rgd1.dll
%System%\dsetwem0.dll
%System%\dsetwem2.dll
%System%\dsewtds0.dll
%System%\dsewtds1.dll
%System%\fool0.dll
%System%\fool1.dll
%System%\fool2.dll
%System%\gasretyw0.dll
%System%\gasretyw1.dll
%System%\gasretyw2.dll
%System%\godert0.dll
%System%\godert1.dll
%System%\gro6d.dll
%System%\helper32.dll
%System%\hgkjghg0.dll
%System%\hgkjghg1.dll
%System%\hwf3u7.dll
%System%\hyrteas0.dll
%System%\hyrteas1.dll
%System%\hyrteas2.dll
%System%\ierdfgh.exe
%System%\ieso0.dll
%System%\ieso1.dll
%System%\ivvgviwuor.exe
%System%\j3ewro.exe
%System%\jijejeju.dll
%System%\jwedsfdo0.dll
%System%\jwedsfdo1.dll
%System%\jwedsfdo2.dll
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).