Threat Search: 

ThreatExpert's Statistics for Troj/Keylog-JV [Sophos]:

Troj/Keylog-JV [Sophos] is also known as:
Threat AliasNumber of Incidents
Backdoor.Win32.Poison.pg [Kaspersky Lab]1,133
Win-Trojan/Poison.8192.AF [AhnLab]928
Virus.Win32.Poison [Ikarus]871
Trojan.DL.CKSPost.Gen [PC Tools]798
BackDoor-DSS.gen.a [McAfee]718
Backdoor.Trojan [Symantec]563
Backdoor:Win32/Poisonivy.E [Microsoft]503
Backdoor.Ciadoor [Symantec]465
Backdoor:Win32/Poisonivy.H [Microsoft]304
BackDoor-DKI.gen.a [McAfee]211
Backdoor:Win32/Poison.M [Microsoft]194
BackDoor-DSS [McAfee]142
Backdoor.Win32.Poison.cpb [Kaspersky Lab]85
BackDoor-DKI.gen.d [McAfee]62
Virus.Win32.Poison.DE [Ikarus]58
BackDoor-DKI.gen [McAfee]31
Trojan.DL.Agent.XGB [PC Tools]17
Infostealer [Symantec]13
Win-Trojan/Poison.8192.AB [AhnLab]8
Backdoor.Win32.Poison.aec [Kaspersky Lab]2
Backdoor.Poisonivy [Ikarus]1
Backdoor.Win32.Poison.aet [Kaspersky Lab]1
Backdoor.Win32.Poison.auy [Kaspersky Lab]1
Virus.Win32.Crypt.CIK [Ikarus]1
Win-Trojan/Agent.8192.EL [AhnLab]1
Win-Trojan/Poison.7168.N [AhnLab]1

Troj/Keylog-JV [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
South Africa1
Sweden1

Troj/Keylog-JV [Sophos] is known to be created as:
%AllUsersProfile%\dev10.exe
%AllUsersProfile%\dev3.exe
%AllUsersProfile%\dev5.exe
%AllUsersProfile%\dev8.exe
%AppData%\80.exe.exe
%InternetCache%\1.exe
%LocalSettings%\temp1458.exe
%LocalSettings%\temp7532.exe
%LocalSettings%\temptmp.exe
%ProgramFiles%\haxy\haxy\server_pi.exe
%ProgramFiles%\hellz\server.exe
%ProgramFiles%\server.exe
%ProgramFiles%\sex.exe
%ProgramFiles%\sssssssssssss.exe
%System%\1337.exe
%System%\3b.exe
%System%\444.exe
%System%\5.exe
%System%\aa.exe
%System%\ada.exe
%System%\av.exe
%System%\avp.exe
%System%\crs.exe
%System%\data_steam1.exe
%System%\dns.exe
%System%\dsdsd.exe
%System%\fail.exe
%System%\fg.exe
%System%\ghh.exe
%System%\hh.exe
%System%\iconchanger.exe
%System%\iexplore.exe
%System%\iexplorer.exe
%System%\interxpoler.exe
%System%\j2.exe
%System%\j4x3d.exe
%System%\jogo.exe
%System%\jx2.exe
%System%\khalmnpr.exe
%System%\ki.exe
%System%\kinder.exe
%System%\kkookkaa.exe
%System%\ma.exe
%System%\massenger.exe
%System%\mcs.exe
%System%\mesenger.exe
%System%\messenger.exe
%System%\microsoft.exe
%System%\mm.exe
%System%\moop.exe
%System%\msmsgs.exe
%System%\msn.exe
%System%\msn.s.exe
%System%\msncofig.exe
%System%\msngr.exe
%System%\msnmsge.exe
%System%\msnmsgr.exe
%System%\msnnn.exe
%System%\msnsys32.exe
%System%\mssn.exe
%System%\msvessfinal.exe
%System%\netserv.exe
%System%\new.exe
%System%\nm.exe
%System%\pi_server.exe
%System%\poop.exe
%System%\poye.exe
%System%\realplayerr.exe
%System%\regedis.com
%System%\root.exe
%System%\rset542115.exe
%System%\rst.exe
%System%\rundl32.exe
%System%\runstalk.exe
%System%\samp-server.exe
%System%\server.exe
%System%\setub.exe
%System%\skype.exe
%System%\ss.exe
%System%\stub.dll
%System%\stup.exe
%System%\svchot.exe
%System%\svhost.exe
%System%\swisit.exe
%System%\syshost.exe
%System%\sysrowdl32.exe
%System%\system.exe
%System%\system32.exe
%System%\system32.scr
%System%\test.exe
%System%\th.exe
%System%\toni.exe
%System%\untitled-2.exe
%System%\update321.exe
%System%\victims121.exe
%System%\win.exe
%System%\win32.exe
%System%\windl32.exe
%System%\window.exe
%System%\windows.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %InternetCache% is a variable that refers to the file system directory that serves as a common repository for temporary Internet files. A typical path is C:\Documents and Settings\[UserName]\Local Settings\Temporary Internet Files.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).