Threat Search: 

ThreatExpert's Statistics for Trojan.Agent2!sd6 [PC Tools]:

Trojan.Agent2!sd6 [PC Tools] is also known as:
Threat AliasNumber of Incidents
Troj/PSW-GM [Sophos]265
Trojan.Win32.Agent2 [Ikarus]227
Generic PWS.y [McAfee]127
Trojan.Win32.Agent2.fvv [Kaspersky Lab]120
Trojan.Win32.Agent2.gpj [Kaspersky Lab]120
Generic Downloader.ab [McAfee]117
Win-Trojan/Agent2.11264.L [AhnLab]116
Win-Trojan/Agent.172032.DJ [AhnLab]108
Trojan.Hijacker [Ikarus]99
Trojan.Win32.Agent2.iaq [Kaspersky Lab]98
Trojan:Win32/Tibs.JB [Microsoft]98
PWS:Win32/Lolyda.AD [Microsoft]91
Trojan.Win32.Agent2.hfu [Kaspersky Lab]91
Trojan-GameThief.Win32.OnLineGames [Ikarus]91
PWS:Win32/Zosernam.C [Microsoft]90
Troj/FakeAV-PG [Sophos]75
FakeAlert-CC [McAfee]73
Trojan Horse [Symantec]73
Infostealer [Symantec]59
Mal/Generic-A [Sophos]58
Win-Trojan/OnlineGameHack.161776 [AhnLab]56
PWS-Gamania.gen.m [McAfee]54
Generic.dx [McAfee]35
Infostealer.Onlinegame [Symantec]33
Trojan.Win32.Agent2.hbo [Kaspersky Lab]32
PWS-Mmorpg.gen [McAfee]29
Virus.Trojan.Win32.Agent2 [Ikarus]29
TrojanDownloader:Win32/Agent!rts [Microsoft]18
Trojan.KillAV [Symantec]16
Trojan.Win32.Agent2.gxl [Kaspersky Lab]14
Infostealer.Gampass [Symantec]13
Mal/EncPk-HL, Mal/FakeVirPk-A [Sophos]12
Win-Trojan/Agent2.3072 [AhnLab]12
Trojan.Generic [Ikarus]10
Win-Trojan/Xema.variant [AhnLab]10
Mal/UnkPack-Fam [Sophos]9
TrojanDownloader:Win32/Troxen!rts [Microsoft]9
Trojan.Win32.Agent2.gqv [Kaspersky Lab]8
Win-Trojan/Agent2.11264.M [AhnLab]8
Trojan.Win32.Agent2.grz [Kaspersky Lab]6
Trojan.Win32.Agent2.gsd [Kaspersky Lab]6
Downloader [Symantec]5
Generic BackDoor.k [McAfee]5
VirTool:Win32/VBInject.gen!S [Microsoft]5
Mal/Behav-243 [Sophos]4
Trojan.Fakeavalert [Symantec]4
Trojan.Win32.Agent2.dhg [Kaspersky Lab]4
Trojan-Downloader.Win32.Banload [Ikarus]4
TrojanDownloader:Win32/Zlob.APM [Microsoft]4
VirTool:Win32/CeeInject.gen!J [Microsoft]4
Mal/EncPk-HJ [Sophos]3
Trojan.FakeAV [Symantec]3
Trojan.Pandex [Symantec]3
Trojan.Restarter [Ikarus]3
Trojan.Win32.Agent2.cei [Kaspersky Lab]3
Trojan.Win32.Agent2.gxd [Kaspersky Lab]3
Trojan.Win32.Agent2.hck [Kaspersky Lab]3
Trojan:Win32/Insebro.C [Microsoft]3
TrojanDownloader:Win32/Cutwail.AI [Microsoft]3
W32.SillyFDC [Symantec]3
Win-Trojan/Agent2.28160.AA [AhnLab]3
Backdoor.Coreflood.C [Symantec]2
Backdoor.Rbot [Ikarus]2
Backdoor:Win32/Afcore.BB [Microsoft]2
Generic Dropper.cx [McAfee]2
Generic PWS.ak [McAfee]2
not-a-Virus.Hacktool.Keygen.registryb [Ikarus]2
PWS:Win32/Zbot.FAQ [Microsoft]2
Trojan.Win32.Agent2.abc [Kaspersky Lab]2
Trojan.Win32.Agent2.brl [Kaspersky Lab]2
Trojan.Win32.Agent2.dfj [Kaspersky Lab]2
Trojan.Win32.Agent2.ere [Kaspersky Lab]2
Trojan.Win32.Agent2.fyq [Kaspersky Lab]2
Trojan.Win32.Agent2.gow [Kaspersky Lab]2
Trojan.Win32.Agent2.gqf [Kaspersky Lab]2
Trojan.Win32.Agent2.gwb [Kaspersky Lab]2
Trojan.Win32.Agent2.gwv [Kaspersky Lab]2
Trojan.Win32.Agent2.gyk [Kaspersky Lab]2
Trojan.Win32.Agent2.hcj [Kaspersky Lab]2
Trojan-Dropper.Kobcka [Ikarus]2
VirTool:Win32/VBInject.gen!U [Microsoft]2
Win-Trojan/Agent2.11776.F [AhnLab]2
Worm:Win32/Taterf.B [Microsoft]2
Backdoor.Trojan [Symantec]1
CoreFlood.dll [McAfee]1
CoreFlood.dr.gen [McAfee]1
Cutwail [McAfee]1
Cutwail.gen.c [McAfee]1
Downloader.MisleadApp [Symantec]1
Downloader-BON [McAfee]1
Dropper/Agent.98304.CF [AhnLab]1
Dropper/Sibeair.22016 [AhnLab]1
Exploit:Win32/MS08067.gen!A [Microsoft]1
Generic BackDoor [McAfee]1
Generic Downloader.x [McAfee]1
Generic Dropper.p [McAfee]1
Generic Exploit [McAfee]1
Generic.dx!bs [McAfee]1
Generic.dx!cj [McAfee]1
Mal/Banker-E [Sophos]1

Trojan.Agent2!sd6 [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
China6
Brazil5
Israel1
Russian Federation1
Spain1

Trojan.Agent2!sd6 [PC Tools] is known to be created as:
%CommonAppData%\microsoft\bits.dll
%FontsDir%\comres.dll
%ProgramFiles%\h3kqk5ce.exe.com
%ProgramFiles%\internet explorer\iedw.exe.com
%ProgramFiles%\internet explorer\iexplore.exe.com
%ProgramFiles%\io8oyqvba4\s3htcnh98rz.exe
%ProgramFiles%\io8oyqvba4\s3htcnh98rz.exe.com
%ProgramFiles%\messenger\msmsgs.exe.com
%ProgramFiles%\msn\msncorefiles\install\msnsusii.exe.com
%ProgramFiles%\msn\msnia\msniasvc.exe.com
%ProgramFiles%\msn\msninstaller\msninst.exe.com
%ProgramFiles%\netmeeting\cb32.exe.com
%ProgramFiles%\outlook express\msimn.exe.com
%ProgramFiles%\web publish\wpwiz.exe.com
%ProgramFiles%\windows media player\migrate.exe.com
%ProgramFiles%\windows nt\accessories\wordpad.exe.com
%ProgramFiles%\windows nt\dialer.exe.com
%ProgramFiles%\winpcap\rpcapd.exe.com
%System%\bifrost\server.exe
%System%\bndmss.exe
%System%\mi88036.dll
%System%\msr.exe
%System%\olhrwef.exe
%System%\reader_s.exe
%System%\rs32net.exe
%System%\scrnrdr.exe
%System%\spool\drivers\systempro.exe
%System%\system.exe
%System%\tcpcon.dll
%System%\uweyiwe0.dll
%System%\wmi88036.dll
%System%\wupdate.exe
%System%\xxxrun.dll
%Temp%\_a00f3f9a3.exe
%Temp%\cmss.exe
%Temp%\e9t3.exe
%Temp%\ixp000.tmp\bnez.exe
%Temp%\windows\system32\reader_s.exe
%UserProfile%\reader_s.exe
%Windir%\82p45f4.exe
%Windir%\fxstaller.exe
%Windir%\ieocx.dll
%Windir%\ld01.exe
c:\gy.exe
c:\restore\h-6-1-53-0976546321-090909032-8763-1337\good.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.