Threat Search: 

ThreatExpert's Statistics for Rootkit.Podnuha!sd6 [PC Tools]:

Rootkit.Podnuha!sd6 [PC Tools] is also known as:
Threat AliasNumber of Incidents
Boaxxe.dll [McAfee]8
Trojan Horse [Symantec]8
Mal/Generic-A [Sophos]5
Infostealer [Symantec]4
Mal/Dropper-AC [Sophos]4
Rootkit.Win32.Podnuha.ajk [Kaspersky Lab]4
Generic Dropper [McAfee]3
Rootkit.Win32.Podnuha [Ikarus]3
Downloader-BON [McAfee]2
Generic.dx [McAfee]2
Rootkit.Win32.Podnuha.byx [Kaspersky Lab]2
Rootkit.Win32.Podnuha.bzh [Kaspersky Lab]2
Trojan-Dropper.SSS [Ikarus]2
Trojan-Dropper.Win32.Boaxxe [Ikarus]2
Hacktool.Rootkit [Symantec]1
Rootkit.Win32.Podnuha.bse [Kaspersky Lab]1
Rootkit.Win32.Podnuha.bsf [Kaspersky Lab]1
Rootkit.Win32.Podnuha.cbi [Kaspersky Lab]1
Rootkit.Win32.Podnuha.dl [Kaspersky Lab]1
TROJ_PODNUHA.N [Trend Micro]1
TROJ_PODNUHA.R [Trend Micro]1
Win-Trojan/Podnuha.125440.AB [AhnLab]1
Win-Trojan/Podnuha.125440.Y [AhnLab]1

Rootkit.Podnuha!sd6 [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation8
United Kingdom3

Rootkit.Podnuha!sd6 [PC Tools] is known to be created as:
%System%\bthc.dll
%System%\cewmd.dll
%System%\cscdl.dll
%Temp%\__c00250a9.exe
%Temp%\__c00bc4cb.exe
%Temp%\__c00c46a2.exe
%Temp%\__c00da8d2.exe
%Temp%\__c00f8cd9.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).