Threat Search: 

ThreatExpert's Statistics for Rootkit.Win32.Agent.ex [Ikarus]:

Rootkit.Win32.Agent.ex [Ikarus] is also known as:
Threat AliasNumber of Incidents
Hacktool.Rootkit [Symantec]16,822
Rootkit.Win32.Agent.ex [Kaspersky Lab]16,820
Generic Rootkit.d [McAfee]16,704
TrojanSpy:Win32/Ursnif [Microsoft]16,704
TROJ_ROOTKIT.FX [Trend Micro]16,008
Troj/Rootkit-DK [Sophos]15,892
Rootkit.Agent.EX [PC Tools]15,420
Win-Trojan/Agent.8192.BP [AhnLab]5,568
Rootkit.Agent.CZBC [PC Tools]696
Infostealer.Snifula [Symantec]104
TROJ_AGENT.CWT [Trend Micro]92
Rootkit.Win32.Agent.sz [Kaspersky Lab]64
Mal/Generic-A [Sophos]24
VirTool:WinNT/Ursnif.A [Microsoft]24
Win-Trojan/Agent.7680.CN [AhnLab]16
PWS-LDPinch [McAfee]4
Rootkit.Agent!ct [PC Tools]4
Trojan-PSW.LdPinch!sd5 [PC Tools]4
TROJ_ROOTKIT.CA [Trend Micro]3
Trojan-PSW.Win32.Papras.ch [Kaspersky Lab]3
PWS:Win32/Ldpinch.W [Microsoft]1
Troj/LdPinch-QZ [Sophos]1
Trojan-PSW.Win32.LdPinch.dvx [Kaspersky Lab]1

Rootkit.Win32.Agent.ex [Ikarus] is known to be created as:
%Windir%\new_drv.sys
Note: %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.