Threat Search: 

ThreatExpert's Statistics for Trojan.Agent [Ikarus]:

Trojan.Agent [Ikarus] is also known as:
Threat AliasNumber of Incidents
Mal/Generic-A [Sophos]84
Trojan Horse [Symantec]54
IRC Trojan [Symantec]52
IRC/Flood [McAfee]52
FakeAlert-Y [McAfee]50
Generic.dx [McAfee]38
Downloader [Symantec]31
SpyDestroy [Symantec]30
Generic Downloader.c [McAfee]24
Win32.SuspectCrc [Ikarus]23
W32/Autorun-AAA [Sophos]20
Trojan.Win32.VB.wbb [Kaspersky Lab]16
W32/Autorun.worm.gen [McAfee]16
Win-Trojan/Agent.28672.AFI [AhnLab]16
Infostealer.Gampass [Symantec]15
Program:Win32/AlertSpy [Microsoft]15
W32.SillyFDC [Symantec]14
Mal/Emogen-G [Sophos]12
PWS-Banker [McAfee]12
VBS/Xema [AhnLab]12
TrojanSpy:Win32/Agent.MM [Microsoft]11
Program:Win32/AntivirusProtection [Microsoft]10
Trojan.Generic [PC Tools]10
Win-Trojan/Xema.variant [AhnLab]10
Worm.Win32.Downloader.yv [Kaspersky Lab]10
New Malware.aj [McAfee]9
Trojan-Downloader.Win32.Banload.zxb [Kaspersky Lab]9
Application.Whitelist [PC Tools]8
TrojanSpy:Win32/Delf [Microsoft]8
Win-Trojan/Agent.59904.DJ [AhnLab]8
Infostealer [Symantec]6
Trojan-Spy.Win32.Agent.amif [Kaspersky Lab]6
Worm.Pinit [PC Tools]6
Backdoor.Trojan [Symantec]5
Generic Downloader.x [McAfee]5
RogueAntiSpyware.Spyware_Remover [PC Tools]5
Trojan-Spy.Win32.Agent [Ikarus]5
W32.Spybot.Worm [Symantec]5
Adware.Webprefix [Symantec]4
Generic PWS.y!i [McAfee]4
Infostealer.Onlinegame [Symantec]4
New Malware.ex [McAfee]4
Troj/Dloadr-BUU [Sophos]4
Troj/Dropr-K [Sophos]4
TROJ_AGENT.ATDZ [Trend Micro]4
Trojan.Agent.DYWF [PC Tools]4
Trojan-Downloader.Agent [Ikarus]4
Trojan-Downloader.Win32.Banload.zzv [Kaspersky Lab]4
Trojan-Spy.Win32.Agent.amv [Kaspersky Lab]4
Win-Trojan/Agent.17920.LA [AhnLab]4
Backdoor:Win32/FlyAgent.E [Microsoft]3
BackDoor-DRV.gen.a [McAfee]3
Troj/Bckdr-QUF [Sophos]3
TROJ_AGENT.QD [Trend Micro]3
Trojan-Downloader.Win32.Banload.aazp [Kaspersky Lab]3
Trojan-Spy.Onlinegame!sd6 [PC Tools]3
Win-Trojan/Agent.167936.EI [AhnLab]3
Adware.BHO.EC [PC Tools]2
Adware.Stud.M [PC Tools]2
Adware-KeenValue [McAfee]2
Backdoor.Win32.IRCBot.aoj [Kaspersky Lab]2
Backdoor:Win32/Poebot.W [Microsoft]2
Generic.dx!dwe [McAfee]2
Infostealer.Banker.C [Symantec]2
Mal/EncPk-CZ [Sophos]2
Mal/EncPk-GB [Sophos]2
Mal/KeyGen-A [Sophos]2
Mal/Packer [Sophos]2
not-a-virus:AdWare.Win32.Stud.a [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Stud.d [Kaspersky Lab]2
Packed.Generic.76 [Symantec]2
Packed/Upack [AhnLab]2
PWS:Win32/Zbot.gen!G [Microsoft]2
Spy-Agent.bw [McAfee]2
Suspicious.MH690 [Symantec]2
Trojan.Win32.Agent.cuxo [Kaspersky Lab]2
Trojan:Win32/Alureon.gen!J [Microsoft]2
Trojan:Win32/Bumat!rts [Microsoft]2
Trojan-Downloader.Banload!sd6 [PC Tools]2
Trojan-Downloader.Win32.Small.aeyy [Kaspersky Lab]2
Trojan-Dropper.Agent.LHH [PC Tools]2
TrojanDropper:Win32/VB.DP [Microsoft]2
Trojan-Spy.Gampass!sd6 [PC Tools]2
Trojan-Spy.Win32.Zbot.dqu [Kaspersky Lab]2
TSPY_ZBOT.OJ [Trend Micro]2
W32/Mariofev!enc [McAfee]2
W32/Sdbot.worm [McAfee]2
Win32/IRCBot.worm.34816.P [AhnLab]2
Win32/IRCBot.worm.variant [AhnLab]2
Worm.RBot.OQX [PC Tools]2
Worm:Win32/Nuj.A [Microsoft]2
Adware.BHO!sd6 [PC Tools]1
Adware.EShopper!ct [PC Tools]1
Adware.Websearch [PC Tools]1
Adware.Websearch [Symantec]1
Adware-Wyyo [McAfee]1
Backdoor.Graybird [Symantec]1
Backdoor.Rbot!ct [PC Tools]1
Backdoor.Win32.Bifrose.bazv [Kaspersky Lab]1
Backdoor.Win32.Rbot.ebe [Kaspersky Lab]1

Trojan.Agent [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China31
Republic of Korea11
Brazil9
Italy8
Russian Federation7
United Kingdom5
Germany3
France2
Japan2
Netherlands2
Spain2
Australia1
Chile1
Estonia1
Finland1
Israel1
Sweden1
Taiwan1

Trojan.Agent [Ikarus] is known to be created as:
%AllUsersProfile%\fuoceivou.dll
%AppData%\adobe\update\dxloc.exe
%ProgramFiles%\adware remover\spywares\browser hijack\helper.dll
%ProgramFiles%\essentialpim pro\essentialpim.exe
%ProgramFiles%\ftp now\ftpnow.exe
%ProgramFiles%\homeview\uninstall.exe
%ProgramFiles%\icheck\uninstall.exe
%ProgramFiles%\idm\idman.exe
%ProgramFiles%\mirc\irc bot\svchost.exe
%ProgramFiles%\nieguideplus\nieguideplus.exe
%ProgramFiles%\nsasoft\spotmsn\spotmsn.exe
%ProgramFiles%\qvodplayer\qvodterminal.exe
%ProgramFiles%\sbrows\sbrowsunins.exe
%ProgramFiles%\speederxp\unins000.exe
%ProgramFiles%\surfanonymous\surfanonymous.exe
%ProgramFiles%\swmanager\swmgr.exe
%ProgramFiles%\windows media player\rthdvcpl.exe
%ProgramFiles%\windows nt\antivir.dll
%ProgramFiles%\yt.exe.exe
%System%\admininsssd.dll
%System%\ajjlv5.5\winio.dll
%System%\ancvnniuu.dll
%System%\api32.dll
%System%\batscservice.dll
%System%\boercservice.dll
%System%\boercservice.exe
%System%\boerscs.dll
%System%\boerscs.exe
%System%\browser hijack\helper.dll
%System%\cheak_hook.dll
%System%\cyytxw.exe
%System%\dllcache\explorer.exe
%System%\ercservdin.dll
%System%\flymain.dll
%System%\glmf3232.dll
%System%\helper.dll
%System%\honhcservice.dll
%System%\honrader.dll
%System%\injectmsg.exe
%System%\logon.exe
%System%\majkvb.exe
%System%\nskycservice.dll
%System%\nskycservice.exe
%System%\ntos.exe
%System%\plok.dll
%System%\prstservice.dll
%System%\prstservice.exe
%System%\prunnet.exe
%System%\psvra.exe
%System%\qmacro\winio.dll
%System%\rundll64.exe
%System%\winamp.exe
%System%\winctrl32.dll
%Temp%\15.exe
%Temp%\4.exe
%Temp%\4127usa.dll
%Temp%\6476728f.exe
%Temp%\888.exe
%Temp%\aimbot.exe
%Temp%\ftp.exe
%Temp%\ixp000.tmp\abc.exe
%Temp%\ixp000.tmp\clonecd.exe
%Temp%\ixp000.tmp\convpic.dll
%Temp%\ixp000.tmp\getcode.dll
%Temp%\ixp000.tmp\svchost.exe
%Temp%\juegosgratis.exe
%Temp%\kafan virlist 20090715\090714-7-4.exe
%Temp%\myplugin\setup.exe
%Temp%\qqdownload.exe
%Temp%\rarsfx0\wgalogon.dll
%Temp%\test.exe
%Temp%\yasu.exe
%UserProfile%\winlogon.exe
%Windir%\cmmon32.exe
%Windir%\cursors\cleanup.exe
%Windir%\fybdylea.exe
%Windir%\jzuznuoir.dll
%Windir%\yeuvensoz.dll
c:\aimbot.exe
c:\nieguideplus.exe
c:\winnt\system32\lavan\osql.exe
c:\winnt\system32\os\osql.exe
c:\winnt\system32\osql.exe
c:\wslive.exe
c:\yt.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.