Threat Search: 

ThreatExpert's Statistics for Trojan-Dropper.Delf [Ikarus]:

Trojan-Dropper.Delf [Ikarus] is also known as:
Threat AliasNumber of Incidents
Mal/Generic-A [Sophos]234
Trojan Horse [Symantec]223
Win-Trojan/Xema.variant [AhnLab]203
Backdoor.Trojan [Symantec]141
Generic.dx [McAfee]135
Infostealer.Gampass [Symantec]105
Generic PWS.y [McAfee]103
Downloader [Symantec]101
PWCrack-PassView [McAfee]95
not-a-virus:PSWTool.Win32.PassView.162 [Kaspersky Lab]94
Application.StoragePass_Viewer [PC Tools]91
BackDoor-CZP.dr [McAfee]84
Infostealer [Symantec]84
W32.IRCBot.Gen [Symantec]77
PWS:Win32/Passview [Microsoft]66
Generic BackDoor [McAfee]63
PWS:Win32/Ceekat.gen!A [Microsoft]58
Trojan.Adclicker [Symantec]56
Backdoor.Win32.Turkojan.il [Kaspersky Lab]54
Mal/Packer [Sophos]52
Win-Trojan/QQPass.Gen [AhnLab]51
Backdoor.Turkojan.I [PC Tools]49
TrojanDropper:Win32/Delfdru.gen!A [Microsoft]40
Trojan-Spy.Win32.Ftput.c [Kaspersky Lab]40
Troj/Agent-GMF [Sophos]38
Mal/Bancos-A [Sophos]37
Backdoor.Graybird [Symantec]36
Backdoor.Win32.Turkojan.r [Kaspersky Lab]36
TrojanSpy.Ftput.B [PC Tools]36
Mal_Infostl [Trend Micro]35
PWS-OnlineGames.eb.gen.b [McAfee]33
Trojan.PWS.QQGame.Gen [PC Tools]33
Trojan.QQPass.Gen.7 [PC Tools]32
Win-Trojan/Buzus.209408.D [AhnLab]32
Generic PUP.x [McAfee]31
Generic Downloader.x [McAfee]30
Mal/Delf-Y, Mal/Dropper-G [Sophos]30
Backdoor.Turkojan.il [PC Tools]29
Mal/Emogen-I [Sophos]27
Suspicious.MH690 [Symantec]27
W32.SillyFDC [Symantec]26
Hacktool.PassReminder [Symantec]25
PWS:Win32/OnLineGames.DI.dll [Microsoft]25
TrojanSpy.Delf.AYIW [PC Tools]25
Trojan-Spy.Win32.Delf.blc [Kaspersky Lab]25
TROJ_FTPUT.B [Trend Micro]24
Hacktool.PStorRevealer [Symantec]23
Infostealer.Bancos [Symantec]23
Mal/Behav-053 [Sophos]23
PWS:Win32/Cimuz.D [Microsoft]23
Trojan-Clicker.Win32.Delf.ih [Kaspersky Lab]23
TrojanClicker:Win32/Agent.NAD [Microsoft]23
Mal/Basine-C [Sophos]22
Trojan-Dropper.Win32.Delf.cnh [Kaspersky Lab]22
BKDR_DELF.CME [Trend Micro]21
Backdoor.Turkojan.Gen [PC Tools]20
Trojan.Fakemess [Symantec]20
Trojan-Clicker.Delf.ih [PC Tools]20
Trojan-PWS.OnlineGames.SYHE [PC Tools]20
Backdoor.Win32.Hupigon.gnzd [Kaspersky Lab]19
New Malware.u [McAfee]19
Win-Trojan/Turkojan.307712 [AhnLab]18
Adware:Win32/WebcamNowJacker [Microsoft]17
Backdoor.Win32.Delf.bf [Kaspersky Lab]17
BackDoor-ADB [McAfee]17
Mal/Emogen-Y [Sophos]17
Trojan-Spy.Win32.Agent.amif [Kaspersky Lab]17
Backdoor:Win32/Blackhole.U [Microsoft]16
Generic Downloader.d [McAfee]16
Mal/Behav-214, Mal/Dropper-H [Sophos]16
Mal/DelpDldr-F [Sophos]16
Mal/Dorf-A [Sophos]16
Mal/Emogen-P, Mal/Behav-053 [Sophos]16
Trojan.Win32.Delf.ooz [Kaspersky Lab]16
Trojan.Win32.Delf.ys [Kaspersky Lab]16
Backdoor.Delf.DIP [PC Tools]15
Mal/Emogen-U [Sophos]15
Trojan.Win32.Delf.ort [Kaspersky Lab]15
Trojan-Downloader.Win32.Small.ajrf [Kaspersky Lab]15
TrojanSpy.Small.O [PC Tools]15
Trojan-Spy.Win32.Xspyout.a [Kaspersky Lab]15
W32/Tumbi.worm.dll [McAfee]15
Win-Trojan/Agent.12288.NA [AhnLab]15
Win-Trojan/Turkojan.276992 [AhnLab]15
Backdoor.DMSpammer [Symantec]14
Backdoor.Win32.Delf.dgt [Kaspersky Lab]14
Infostealer.Banker.C [Symantec]14
Mal/Dropper-G [Sophos]14
TrojanDropper:Win32/ProcessInjector.A [Microsoft]14
Backdoor.Delf.J [PC Tools]13
Backdoor.Win32.Delf.cci [Kaspersky Lab]13
Mal_Banker [Trend Micro]13
Trojan.Win32.Delf.mcv [Kaspersky Lab]13
W32.Spybot.Worm [Symantec]13
Backdoor.Win32.Delf.opq [Kaspersky Lab]12
Backdoor.Win32.Singu.po [Kaspersky Lab]12
Backdoor:Win32/Poison.Y [Microsoft]12
Backdoor:Win32/Turkojan.AI [Microsoft]12
Troj/Musor-Gen [Sophos]12
Trojan.Delf!sd6 [PC Tools]12

Trojan-Dropper.Delf [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China251
Brazil122
Russian Federation77
Italy51
Republic of Korea45
Germany43
United Kingdom25
Spain23
France15
Israel12
Poland12
Turkey10
Netherlands8
Sweden7
Oman6
Iran5
Canada4
Ukraine4
Romania3
Taiwan3
Egypt2
Greece2
Saudi Arabia2
Australia1
Azerbaijan1
Chile1
Croatia1
Hong Kong1
Japan1
Morocco1
Thailand1

Trojan-Dropper.Delf [Ikarus] is known to be created as:
%AppData%\adobe\rundtl.exe
%AppData%\client.exe
%AppData%\gpass\gfltdrv.sys
%AppData%\lsass.exe
%AppData%\microsoft\rundtl.exe
%AppData%\microsoft\windows\runlld.exe
%AppData%\shieldmanager.exe
%AppData%\svchost.exe
%AppData%\unobi.dll
%AppData%\usdownloader_2008.exe
%CommonFavorites%\netservice.exe
%CommonPrograms%\startup\avp.exe
%CommonPrograms%\startup\rundll32.exe
%FontsDir%\syn00-11-22-33-44\system\smss.exe
%FontsDir%\timpiatf0rm.exe
%FontsDir%\timpiatform.exe
%FontsDir%\timplatf0rm.exe
%Profiles%\localservice.exe
%Profiles%\networkservice.exe
%Profiles%\woshou1a.exe
%ProgramFiles%\active tts\demo\ttsservice\ttsservice.exe
%ProgramFiles%\adobe.exe
%ProgramFiles%\aq.exe
%ProgramFiles%\azureus installer\azureus-installer.exe
%ProgramFiles%\bifrost\art.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\common files\speechengines\microsoft\spcomon.dll
%ProgramFiles%\common files\system\edofgjq.exe
%ProgramFiles%\common files\system\fphwhio.exe
%ProgramFiles%\common files\system\fpwiqhk.exe
%ProgramFiles%\common files\system\incomctl.exe
%ProgramFiles%\common files\system\nluoyvq.exe
%ProgramFiles%\common files\system\nsnjair.exe
%ProgramFiles%\common files\system\qbbtqcy.exe
%ProgramFiles%\common files\system\smss.exe
%ProgramFiles%\common files\system\ssecbjf.exe
%ProgramFiles%\coolspeech\realtime.dll
%ProgramFiles%\dfsdfsd\ps2m.exe
%ProgramFiles%\dts5\dtsproc.dll
%ProgramFiles%\entvip2008\kavservs.exe
%ProgramFiles%\f_server.exe
%ProgramFiles%\fake mp3 detector\fmd.exe
%ProgramFiles%\greenopen\greenopenwb.dll
%ProgramFiles%\idigital technologies\key serv 2.0\ikeyhk2.dll
%ProgramFiles%\internet explorer\avtfh.exe
%ProgramFiles%\internet explorer\fyzqt.exe
%ProgramFiles%\internet explorer\ie.dll
%ProgramFiles%\internet explorer\iehp.dll
%ProgramFiles%\internet explorer\iexplore32.sys
%ProgramFiles%\internet explorer\lfkltyyyz.exe
%ProgramFiles%\internet explorer\pjavaplug.exe
%ProgramFiles%\internet explorer\plugins\yhelper.exe
%ProgramFiles%\internet explorer\svchost.exe
%ProgramFiles%\internet explorer\svcnost.exe
%ProgramFiles%\internet explorer\vtgfm.exe
%ProgramFiles%\kdt site blocker\kdtserv.exe
%ProgramFiles%\killsh\ps2m.exe
%ProgramFiles%\kjhkjhjk\ps2m.exe
%ProgramFiles%\meex.exe
%ProgramFiles%\messenger.exe
%ProgramFiles%\messenger\messenger.exe
%ProgramFiles%\msn.exe
%ProgramFiles%\multi password recovery\updatechecker.exe
%ProgramFiles%\netmeeting.exe
%ProgramFiles%\nhn.exe
%ProgramFiles%\outlook express\install.dll
%ProgramFiles%\outlook express\minmole.exe
%ProgramFiles%\outlook express\socket32.dll
%ProgramFiles%\psmkorea\antikeylogger\psmantis.exe
%ProgramFiles%\puff\puff.exe
%ProgramFiles%\q18.exe
%ProgramFiles%\services\mservice.exe
%ProgramFiles%\system32\server.exe
%ProgramFiles%\tueagles\eagler.dll
%ProgramFiles%\vmware.exe
%ProgramFiles%\web publish\wpwizejsyzjosx.dll
%ProgramFiles%\windows media player\itqqvz.exe
%ProgramFiles%\windows media player\kctmvyz.exe
%ProgramFiles%\windows media player\oftbwad.exe
%ProgramFiles%\windows media player\owfaant.exe
%ProgramFiles%\windows media player\svchost.exe
%ProgramFiles%\windows media player\tihqrnj.exe
%ProgramFiles%\windows media player\tpsuvvww.exe
%ProgramFiles%\windows media player\waths.exe
%ProgramFiles%\windows media player\wmplayerkjfkxcp.dll
%ProgramFiles%\windows media player\xtzegikjl.exe
%ProgramFiles%\windowsupdate.exe
%ProgramFiles%\winpcap.exe
%ProgramFiles%\xerox.exe
%ProgramFiles%\xm\character.exe
%ProgramFiles%\ytb\barc.dll
%ProgramFiles%\ytb\ytb.exe
%Programs%\startup\autostart.exe
%Programs%\startup\lostvolume.exe
%Programs%\startup\ravmone.exe
%Programs%\startup\svmgr.exe
%Programs%\startup\wince3.exe
%System%\01104.exe
%System%\01403.exe
%System%\10031.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonFavorites% is a variable that refers to the file system directory that serves as a common repository for all users' favorite items. A typical path is C:\Documents and Settings\All Users\Favorites (Windows NT/2000/XP).
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).