Threat Search: 

ThreatExpert's Statistics for Trojan-Downloader.Win32.VB.bbi [Ikarus]:

Trojan-Downloader.Win32.VB.bbi [Ikarus] is also known as:
Threat AliasNumber of Incidents
W32.Virut.U [Symantec]96
W32/Vetor-A [Sophos]93
W32/Virut.gen [McAfee]91
Win32.Virut.Gen.5 [PC Tools]89
Virus.Win32.Virut.q [Kaspersky Lab]78
PE_VIRUT.XO [Trend Micro]57
Virus:Win32/Virut.AP [Microsoft]49
PE_VIRUT.XP [Trend Micro]21
Virus:Win32/Virut.AE [Microsoft]18
Virus.Win32.Virut.n [Kaspersky Lab]14
PE_VIRUT.XS [Trend Micro]11
Virus:Win32/Virut.L [Microsoft]10
Virus:Win32/Virut.K [Microsoft]8
PE_VIRUT.XI [Trend Micro]3
Virus:Win32/Virut.AG [Microsoft]3
W32.Virut.R [Symantec]3
W32/Virut.remnants [McAfee]3
Virus:Win32/Azero.A [Microsoft]2
Virus:Win32/Sality.AM [Microsoft]2
Virus:Win32/Virut.AR [Microsoft]2
Win32.Virut.Gen [PC Tools]2
Generic PWS.ak [McAfee]1
Mal/HckPk-A [Sophos]1
Mal_Banker [Trend Micro]1
PWS-Banker.gen.aa [McAfee]1
PWS-Gamania.gen.a [McAfee]1
TROJ_NUWAR.DDJ [Trend Micro]1
Trojan.Win32.Agent2.ecb [Kaspersky Lab]1
Trojan.Win32.Pakes.kgb [Kaspersky Lab]1
Trojan.Win32.Pakes.may [Kaspersky Lab]1
TrojanDownloader:Win32/Tibs [Microsoft]1
Trojan-Dropper.Small.axz [PC Tools]1
Trojan-GameThief.Win32.OnLineGames.scx [Kaspersky Lab]1
TrojanSpy:Win32/Vwealer.CK [Microsoft]1
W32.Gammima.AG [Symantec]1
W32/Dref-AW [Sophos]1
W32/Nachi.worm.a [McAfee]1
W32/Passma.worm.c [McAfee]1
Win32.HLLP.Passma.A [PC Tools]1
Worm.Win32.AutoRun.tko [Kaspersky Lab]1
Worm.Win32.Nachi [PC Tools]1
Worm:Win32/Taterf.B [Microsoft]1

Trojan-Downloader.Win32.VB.bbi [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Brazil3
Russian Federation3
China2
France2
Germany2
United Kingdom2
Canada1
Israel1
Italy1

Trojan-Downloader.Win32.VB.bbi [Ikarus] is known to be created as:
%AppData%\microsoft\nuxa.exe
%ProgramFiles%\twain\twain.exe
%System%\038672055.exe
%System%\amvo.exe
%System%\kamsoft.exe
%System%\kavo.exe
%System%\olhrwef.exe
%System%\reader.exe
%System%\reader_s.exe
%System%\rs32net.exe
%System%\service.exe
%System%\system.exe
%System%\update32.exe
%Temp%\glb1a2b.exe
%UserProfile%\reader_s.exe
%Windir%\aragpren.exe
%Windir%\hdaudio.exe
%Windir%\neos.exe
%Windir%\services.exe
%Windir%\twain.exe
%Windir%\vmmreg32.exe
c:\6j2j.com
c:\adoberd9.0.exe
c:\fppg1.exe
c:\scene.exe
c:\usbflash.exe
c:\vwewav8.com
c:\whi.com
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.