Threat Search: 

ThreatExpert's Statistics for Trojan.Autoit [Ikarus]:

Trojan.Autoit [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan.Win32.Autoit.ci [Kaspersky Lab]180
W32.Imaut [Symantec]161
Virus:Win32/Sality.AM [Microsoft]102
W32/Sality-AM [Sophos]99
Worm.Autoit.DU [PC Tools]71
Trojan.Win32.Autoit.eg [Kaspersky Lab]69
W32/YahLover.worm.gen [McAfee]66
Packed.Win32.Klone.bj [Kaspersky Lab]64
WORM_DELF.FKZ [Trend Micro]64
Mal/Airworm-A [Sophos]63
Worm:Win32/Autorun.FH [Microsoft]62
W32.Harakit [Symantec]61
W32/Sality.gen [McAfee]59
W32.Imaut.U [Symantec]53
Mal/Sohana-A [Sophos]49
WORM_IMAUT.BY [Trend Micro]43
PE_SALITY.EN-1 [Trend Micro]41
WORM_BRACEY.CP [Trend Micro]30
Win32/Kashu.B [AhnLab]29
W32/Sality.ag [McAfee]24
Win32/Autoit.worm.678913 [AhnLab]24
Infostealer [Symantec]16
Trojan.Dropper [Symantec]16
Worm:AutoIt/Renocide.gen!C [Microsoft]16
PE_SALITY.EN [Trend Micro]15
PE_SALITY.JER [Trend Micro]15
PE_SALITY.EK [Trend Micro]14
Trojan.Autoit [PC Tools]14
W32/Autorun.worm.cs [McAfee]12
W32/Autorun-DB [Sophos]12
W32/Sality.ah [McAfee]12
Win32/Sohanad.worm.617343 [AhnLab]12
Trojan Horse [Symantec]11
WORM_IMAUT.HB [Trend Micro]11
Dropper/Ardamax.627361 [AhnLab]10
Mal/Behav-299 [Sophos]10
Win32.Sality.AM.Gen [PC Tools]10
Mal/Generic-A [Sophos]9
Trojan-Downloader.Win32.AutoIt.ji [Kaspersky Lab]9
Worm.AutoIT.DP [PC Tools]8
Win32/Autorun.worm.401408 [AhnLab]7
Mal/Sality-B [Sophos]5
VirTool:Win32/ModTool.A [Microsoft]5
W32/YahLover.worm [McAfee]5
Email-Worm.Win32.Runouce.b [Kaspersky Lab]4
PE_Chir.B [Trend Micro]4
Trojan:Win32/Malagent [Microsoft]4
Virus.Win32.Virut.ce [Kaspersky Lab]4
W32.Imaut.CN [Symantec]4
W32/Chir.b@MM [McAfee]4
W32/Chir-B [Sophos]4
W32/Scribble-B [Sophos]4
Win32/Virut.F [AhnLab]4
Win-Trojan/Agent.616960.E [AhnLab]4
I-Worm.Chir.B [PC Tools]3
Mal/Inet-Fam [Sophos]3
PE_CORELINK.C-1 [Trend Micro]3
PE_SALITY.M [Trend Micro]3
Trojan-Downloader.AutoIt!sd6 [PC Tools]3
Virus:Win32/Almanahe.B [Microsoft]3
Virus:Win32/Chir.B@mm [Microsoft]3
W32/Almanahe.c [McAfee]3
W32/Alman-C [Sophos]3
W32/Sality.ao [McAfee]3
Worm.AutoIt.s [PC Tools]3
Generic.dx [McAfee]2
Mal/Sality-A [Sophos]2
Mal/Sohana-B [Sophos]2
Mal/Sohana-B, Mal/Sohana-A [Sophos]2
not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab]2
PE_PATCHEP.B [Trend Micro]2
PE_SALITY.EM [Trend Micro]2
PE_VIRUT.AV [Trend Micro]2
Trojan.Win32.Patched.bz [Kaspersky Lab]2
Virus.Win32.Virut.av [Kaspersky Lab]2
Virus:Win32/Patched.E [Microsoft]2
Virus:Win32/Sality.AH [Microsoft]2
Virus:Win32/Virut.AC [Microsoft]2
Virus:Win32/Virut.BM [Microsoft]2
W32.Sality.AE [Symantec]2
W32/Autorun.worm.bm [McAfee]2
W32/Autorun-GG [Sophos]2
W32/Patched-A [Sophos]2
W32/Sality.ad [McAfee]2
W32/Virut.gen.a [McAfee]2
W32/Virut.n.gen [McAfee]2
W32/Virut-W [Sophos]2
Win32.Alman.B [PC Tools]2
Win32/Alman.C [AhnLab]2
Win32/ChiHack.6652 [AhnLab]2
Worm.Win32.AutoIt.x [Kaspersky Lab]2
Backdoor.Win32.Agent.uwo [Kaspersky Lab]1
Mal/Inet-Fam, Mal/Behav-299 [Sophos]1
Mal/Swizzor-D, Mal/Airworm-A [Sophos]1
Mal/Swizzor-D, Mal/Sohana-A [Sophos]1
New Malware.bm [McAfee]1
New Poly Win32 [McAfee]1
PE_DELZIUM.A [Trend Micro]1
PE_FUNLOVE.4099 [Trend Micro]1
PE_HUNK.AA [Trend Micro]1

Trojan.Autoit [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
United Kingdom351
Germany110
Russian Federation67
Saudi Arabia1

Trojan.Autoit [Ikarus] is known to be created as:
%System%\regsvr.exe
%Temp%\ixp000.tmp\keygen1.exe
%Windir%\regsvr.exe
c:\inetpub\wwwroot\wwwroot.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.