Threat Search: 

ThreatExpert's Statistics for Trojan-Downloader.Win32.Adload [Ikarus]:

Trojan-Downloader.Win32.Adload [Ikarus] is also known as:
Threat AliasNumber of Incidents
PE_SALITY.AE [Trend Micro]56
W32/Sality-AI [Sophos]55
Virus.Win32.Sality.l [Kaspersky Lab]52
W32/Sality.n [McAfee]50
Virus:Win32/Sality.G [Microsoft]49
W32.HLLP.Sality.O [Symantec]49
Win32/Sality.F [AhnLab]49
Win32.Sality.L [PC Tools]37
Downloader [Symantec]26
Mal/Generic-A [Sophos]21
Downloader.Generic [PC Tools]10
Generic Downloader.x [McAfee]7
Trojan-Downloader.Win32.Adload.fu [Kaspersky Lab]7
Downloader.gen.a [McAfee]6
Generic PWS.bc [McAfee]6
Adware.Maxifiles [PC Tools]5
PWS:Win32/OnLineGames.NW [Microsoft]5
Trojan.Dropper [Symantec]5
TROJ_DLOADER.DKV [Trend Micro]4
Trojan-Downloader.Win32.Adload.hbp [Kaspersky Lab]4
Trojan-Downloader.Win32.Adload.mrh [Kaspersky Lab]4
Trojan-Downloader.Win32.Adload.nsp [Kaspersky Lab]4
Trojan-Downloader.Win32.Adload.ocn [Kaspersky Lab]4
Win-Trojan/OnlineGameHack.61952.N [AhnLab]4
W32/Sality-I [Sophos]3
Win-Trojan/Xema.variant [AhnLab]3
Backdoor.Trojan [Symantec]2
Downloader-BUW [McAfee]2
Infostealer.Gampass [Symantec]2
SecurityRisk.Downldr [Symantec]2
Troj/P2P-C [Sophos]2
Trojan-Downloader.Win32.Adload.pr [Kaspersky Lab]2
TrojanDownloader:Win32/Adload.BE [Microsoft]2
TrojanDownloader:Win32/Adload.BH [Microsoft]2
TrojanDownloader:Win32/Smallagent [Microsoft]2
TrojanDownloader:Win32/VB [Microsoft]2
TrojanDownloader:Win32/VB.LI [Microsoft]2
W32/Sality.s [McAfee]2
AdSubcribe [McAfee]1
Adware:Win32/Adsubscribe [Microsoft]1
Adware:Win32/Fierads [Microsoft]1
Backdoor.Win32.Hupigon.daen [Kaspersky Lab]1
BackDoor-AWQ [McAfee]1
BackDoor-EHF [McAfee]1
Constructor.Win32.Agent.ea [Kaspersky Lab]1
Constructor/Agent.859648 [AhnLab]1
Constructor/Bifrose.1466056 [AhnLab]1
Downloader.MisleadApp [Symantec]1
Downloader.Trojan [Symantec]1
Gen.AdWare [Ikarus]1
Generic BackDoor!jk [McAfee]1
Generic Downloader.s [McAfee]1
Generic Downloader.x!bi [McAfee]1
Generic Downloader.x!bm [McAfee]1
Generic Downloader.x!bzn [McAfee]1
Generic Downloader.x!id [McAfee]1
HackTool.Win32.Delf.dc [Kaspersky Lab]1
Mal/Generic-A, Mal/KeyGen-A [Sophos]1
Mal/Packer [Sophos]1
Mal/PWS-Fam [Sophos]1
Mal/VBDldr-B [Sophos]1
Mal/VBDldr-C, Mal/Emogen-B [Sophos]1
Mal/VBDldr-C, Mal/VBDldr-B, Mal/Emogen-B [Sophos]1
New Malware.bl [McAfee]1
not-a-virus:AdWare.Win32.FearAds.ay [Kaspersky Lab]1
Troj/Agent-LBT [Sophos]1
Troj/Dloadr-CPD [Sophos]1
Trojan Horse [Symantec]1
Trojan.DL.Adload.WX [PC Tools]1
Trojan.Generic [PC Tools]1
Trojan.Packed.9 [Symantec]1
Trojan:Win32/Drastwor.A [Microsoft]1
Trojan:Win32/Sisproc [Microsoft]1
Trojan-Downloader.Adload!sd6 [PC Tools]1
Trojan-Downloader.Win32.Adload.bka [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.bls [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.dtq [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.dzc [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.dzu [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.efp [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.fxm [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.gup [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.guy [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.gve [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.gyc [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.gyr [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.hd [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.hdb [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.hmm [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.ifs [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.ilv [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.ipe [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.ist [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.jtf [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.kxp [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.lmg [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.mxc [Kaspersky Lab]1
Trojan-Downloader.Win32.Adload.pj [Kaspersky Lab]1
Trojan-Downloader.Win32.VB.oqh [Kaspersky Lab]1
Trojan-Downloader.Win32.VB.oqt [Kaspersky Lab]1

Trojan-Downloader.Win32.Adload [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation21
Germany16
China12
Spain12
Republic of Korea5
Brazil3
France3
Turkey2
United Kingdom2
Belgium1
Greece1
Israel1
Sweden1
Taiwan1

Trojan-Downloader.Win32.Adload [Ikarus] is known to be created as:
%AppData%\adsubscribe\adsubscribe.dll
%AppData%\adsubscribe\uninstall.exe
%AppData%\fieryads\fieryads.dll
%AppData%\fieryads\fieryadsuninstall.exe
%Profiles%\a1a1a-server.exe
%Profiles%\u95.exe
%ProgramFiles%\aspack\aspack.exe
%ProgramFiles%\dot1xcfg\dot1xcfg.exe
%ProgramFiles%\elcomsoft\advanced efs data recovery\aefsdr.exe
%ProgramFiles%\hdd health\hddhealth.exe
%ProgramFiles%\p2pmax\p2pmax.exe
%ProgramFiles%\tagrename\tagrename.exe
%System%\ccy159.dll
%System%\ccy645.dll
%System%\d3scene\d3scene_cht.exe
%System%\dllcache\ccy159.dll
%System%\dllcache\ccy645.dll
%System%\fieryads.dll
%System%\flymy.exe
%System%\fmmhile.dll
%System%\m7been.exe
%System%\qpdlwlrq.exe
%System%\scuifile.dll
%System%\stiifile.dll
%System%\tklwkmtr.exe
%Temp%\cr-ulead.exe
%Temp%\hddhealth.exe
%Temp%\ixp000.tmp\m7been.exe
%Temp%\ixp000.tmp\spynet.exe
%Temp%\mia1.tmp\data\offline\171f7ae7\4acd94d1\inshlpr.exe
%Temp%\mia1.tmp\data\offline\85efc7c2\4acd94d1\antilogger.exe
%Temp%\mia1\inshlpr.exe
%Temp%\mia2\inshlpr.exe
%Temp%\rtv_winupd.exe
%Temp%\tmpfile678.exe
%Temp%\wzse0.tmp\antispy.exe
%Windir%\netaps\sysinternals.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.