Threat Search: 

ThreatExpert's Statistics for Trojan-Dropper.Win32.VB [Ikarus]:

Trojan-Dropper.Win32.VB [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]92
Mal/Generic-A [Sophos]56
Generic Dropper [McAfee]37
VirTool:Win32/Eicrypt.A [Microsoft]21
Trojan-Dropper.Win32.VB.imc [Kaspersky Lab]20
Trojan-Dropper.Win32.VB.aeeb [Kaspersky Lab]18
Backdoor.Trojan [Symantec]17
VirTool:Win32/VBInject.BF [Microsoft]17
VirTool:Win32/VBInject.gen!BW [Microsoft]17
Generic Dropper.gv [McAfee]15
Trojan-Dropper.VB!sd6 [PC Tools]15
Dropper/Xema.20518 [AhnLab]13
Trojan.Generic [PC Tools]11
Trojan-Dropper.Win32.VB.grd [Kaspersky Lab]11
Backdoor.Win32.Bifrose.ammh [Kaspersky Lab]10
Trojan.Win32.Agent2.gyd [Kaspersky Lab]10
TrojanDownloader:Win32/VB.XL [Microsoft]10
Win-Trojan/Xema.49152.O [AhnLab]10
Trojan-Dropper.Win32.VB.hug [Kaspersky Lab]9
Troj/Agent-KMT [Sophos]8
Trojan-Dropper.Win32.VB.mth [Kaspersky Lab]8
TrojanSpy:Win32/Banker.MG [Microsoft]8
Mal/Generic-E [Sophos]7
Trojan.Dropper [Symantec]7
Trojan-Dropper.Win32.VB.inq [Kaspersky Lab]7
VirTool:Win32/VBInject.gen!AN [Microsoft]7
W32.SillyFDC [Symantec]7
Downloader [Symantec]6
Generic Downloader.x [McAfee]6
Generic VB.j [McAfee]6
Mal/Inject-H [Sophos]6
Trojan-Dropper.Win32.VB.gvr [Kaspersky Lab]6
VirTool:Win32/Vbinder.AB [Microsoft]6
VirTool:Win32/VBInject.gen!BH [Microsoft]6
Win-Trojan/Bifrose.61440.K [AhnLab]6
Win-Trojan/Xema.variant [AhnLab]6
Backdoor-CEP.gen.af [McAfee]5
Dropper/Xema.70013 [AhnLab]5
Generic Dropper.gi.gen [McAfee]5
Trojan-Dropper.VB.IMC [PC Tools]5
Trojan-Dropper.Win32.VB.aaap [Kaspersky Lab]5
Trojan-Dropper.Win32.VB.acpq [Kaspersky Lab]5
TrojanDropper:Win32/VB [Microsoft]5
Backdoor.Bifrose [Symantec]4
Backdoor.Win32.Bifrose.alvt [Kaspersky Lab]4
Backdoor-CEP [McAfee]4
BackDoor-CEP.svr [McAfee]4
Dropper/Xema.29284 [AhnLab]4
Dropper/Xema.29672 [AhnLab]4
Dropper/Xema.65536.AR [AhnLab]4
Trojan:Win32/Meredrop [Microsoft]4
Trojan-Downloader.Win32.Small [Ikarus]4
Trojan-Downloader.Win32.Small.jla [Kaspersky Lab]4
TrojanDownloader:Win32/Reppop.B [Microsoft]4
Trojan-Dropper.VB.gal [PC Tools]4
Trojan-Dropper.Win32.VB.abgh [Kaspersky Lab]4
Trojan-Dropper.Win32.VB.ijs [Kaspersky Lab]4
VirTool:Win32/VBInject.S [Microsoft]4
W32.IRCBot [Symantec]4
W32/Sdbot.worm!bu [McAfee]4
Win-Trojan/Downloader.24576.VT [AhnLab]4
Adware.Mirar [Symantec]3
Backdoor.Win32.SdBot.kef [Kaspersky Lab]3
Backdoor-DZP [McAfee]3
Generic VB.i [McAfee]3
Generic.dx [McAfee]3
Mal/VB-AB [Sophos]3
Mal/VB-W [Sophos]3
Trojan-Dropper.Win32.VB.aeaq [Kaspersky Lab]3
Trojan-Dropper.Win32.VB.ajwk [Kaspersky Lab]3
Trojan-Dropper.Win32.VB.grk [Kaspersky Lab]3
Trojan-Dropper.Win32.VB.gtf [Kaspersky Lab]3
Trojan-Dropper.Win32.VB.gvm [Kaspersky Lab]3
Trojan-Dropper.Win32.VB.ipz [Kaspersky Lab]3
TrojanDropper:Win32/Dunik!rts [Microsoft]3
VirTool:Win32/Vbcrypt.Y [Microsoft]3
VirTool:Win32/Vbinder.gen!G [Microsoft]3
VirTool:Win32/Vbinder.P [Microsoft]3
VirTool:Win32/VBInject.gen!V [Microsoft]3
Backdoor.Win32.Poison.aqsv [Kaspersky Lab]2
Dropper/Xema.126976.K [AhnLab]2
Dropper/Xema.20480.EI [AhnLab]2
Dropper/Xema.24576.IU [AhnLab]2
Generic BackDoor.b [McAfee]2
Generic Dropper.lg [McAfee]2
Infostealer.Gampass [Symantec]2
Infostealer.Onlinegame [Symantec]2
Mal/Behav-211 [Sophos]2
Mal/VBDrop-B [Sophos]2
Mal/VB-Z [Sophos]2
not-a-virus.Patch.WindowBlinds [Ikarus]2
PE_POLIP.A [Trend Micro]2
PE_SALITY.AE [Trend Micro]2
Troj/Bancos-BGR [Sophos]2
Troj/Mdrop-CHL [Sophos]2
Troj/VB-EHR [Sophos]2
Troj/VBstik-Gen, Mal/Dropper-AL [Sophos]2
Troj/VBstik-Gen, Troj/VBstik-Gen [Sophos]2
TrojanDownloader:Win32/Troxen!rts [Microsoft]2
Trojan-Dropper.Win32.VB.aeam [Kaspersky Lab]2

Trojan-Dropper.Win32.VB [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Germany36
Spain30
United Kingdom7
China6
Russian Federation5
Israel3
Sweden3
Brazil2
France2
Greece2
Netherlands2
Saudi Arabia2
Italy1
Portugal1
Turkey1

Trojan-Dropper.Win32.VB [Ikarus] is known to be created as:
%AppData%\system\system32.exe
%CommonPrograms%\startup\user.exe
%FontsDir%\logcde.dll
%FontsDir%\windef.dll
%Profiles%\dsc00720c.exe
%ProgramFiles%\bifrost\pir.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\logs\srevs.exe
%ProgramFiles%\real\patch.exe
%ProgramFiles%\stardock\object desktop\windowblinds\keygen.exe
%ProgramFiles%\system\system32.exe
%ProgramFiles%\system32\system.exe
%System%\aecces.exe
%System%\bifrost\server.exe
%System%\boot.exe
%System%\chan.exe
%System%\crypted.exe
%System%\fservice.exe
%System%\msaffit.exe
%System%\msbcpw.exe
%System%\msdomo.exe
%System%\msejnb.exe
%System%\msfiqo.exe
%System%\msfudc.exe
%System%\msistmn.exe
%System%\msjlevkf.exe
%System%\msknnuvd.exe
%System%\msnmsgr.exe
%System%\msnnobt.exe
%System%\msoqvr.exe
%System%\msutfva.exe
%System%\mswte.exe
%System%\msytuwty.exe
%System%\ntos.exe
%System%\qzm1\qzm.exe
%System%\sc05000webhxavxrelod.exe
%System%\smss\build.exe
%System%\stub.exe
%System%\sysinfo.exe
%System%\system\win32.exe
%System%\system32\svchost.exe
%System%\system32\win32.exe
%System%\t.exe
%System%\vhosts.exe
%System%\winupdate.exe
%Temp%\1.tmp.exe
%Temp%\a.tmp.exe
%Temp%\crack\crack.exe
%Temp%\crypter\crypted.exe
%Temp%\crypter\sub.exe
%Temp%\ixp000.tmp\csrss.exe
%Temp%\ixp000.tmp\df.exe
%Temp%\ixp000.tmp\keg.exe
%Temp%\ixp000.tmp\notepad.exe
%Temp%\ixp000.tmp\patch-keyfilemaker.exe
%Temp%\ixp000.tmp\picture.exe
%Temp%\ixp000.tmp\premium.exe
%Temp%\ixp000.tmp\rlove.exe
%Temp%\ixp000.tmp\setup.exe
%Temp%\ixp000.tmp\stub.exe
%Temp%\ixp000.tmp\winrar.exe
%Temp%\ixp000.tmp\xvidcodec.exe
%Temp%\ixp001.tmp\dmc.exe
%Temp%\ixp002.tmp\dmc.exe
%Temp%\keymaker.exe
%Temp%\mdr.exe
%Temp%\setup.exe
%Temp%\simplesetup.exe
%Temp%\stub.exe
%Temp%\svchost.exe
%Temp%\tempalbert\crack.exe
%Temp%\tmp1.exe
%Temp%\winpcap_4_0_2.exe
%Temp%\wmplayar.exe
%Temp%\xxx.scr
%Windir%\bfgse244.exe
%Windir%\cftmon32.exe
%Windir%\config\mconfig.exe
%Windir%\encrypted.exe
%Windir%\installed.exe
%Windir%\microsoftupdat\update.exe
%Windir%\mstwain32.exe
%Windir%\mswinsvc.exe
%Windir%\services.exe
%Windir%\shvhost.exe
%Windir%\sv\svhost.exe
%Windir%\svhoste.exe
%Windir%\system.exe
%Windir%\system\sservice.exe
%Windir%\system\videos.exe
%Windir%\system32:client.exe
%Windir%\system32:svnhost.exe
%Windir%\taskmgr.exe
%Windir%\windows2003\mountpot.exe
%Windir%\windvd.exe
c:\1.exe
c:\autoexec.exe
c:\gtfodsn.exe
c:\internetexplorer.exe
c:\recycler\k-1-3542-4232123213-7676767-8888886\r00t.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.