Threat Search: 

ThreatExpert's Statistics for Trojan.Peacomm [Symantec]:

Trojan.Peacomm [Symantec] is also known as:
Threat AliasNumber of Incidents
W32/Nuwar@MM [McAfee]693
RTKT_NUWAR.UY [Trend Micro]504
Downloader-BAI.sys.gen.a [McAfee]503
Email-Worm.Zhelatin!sd5 [PC Tools]470
Email-Worm.Win32.Zhelatin.vd [Kaspersky Lab]336
Email-Worm.Zhelatin [PC Tools]93
Email-Worm.Win32.Zhelatin.d [Kaspersky Lab]65
Backdoor:WinNT/Nuwar.A!sys [Microsoft]55
Troj/Dorf-Fam [Sophos]55
Email-Worm.Win32.Zhelatin.a [Ikarus]48
Trojan.DL.Zhelatin.AR [PC Tools]48
WORM_ZHELATIN.DI [Trend Micro]48
Worm.Zhelatin.Gen!Pac.6 [PC Tools]47
WORM_NUWAR.AR [Trend Micro]43
Worm.DR.Zhelatin.Gen.4 [PC Tools]41
Email-Worm.Win32.Zhelatin.pl [Kaspersky Lab]33
WORM_NUWAR.AA [Trend Micro]32
WORM_NUWAR.JQ [Trend Micro]29
Backdoor:Win32/Nuwar.A [Microsoft]28
WORM_ZHELATI.LQ [Trend Micro]25
TROJ_SMALL.EDW [Trend Micro]22
TROJ_NUWAR.DDJ [Trend Micro]18
Email-Worm.Win32.Zhelatin.agg [Kaspersky Lab]17
Backdoor:WinNT/Nuwar.E [Microsoft]14
Troj/NtRootK-CW [Sophos]14
Troj/BdoorB-Fam, Mal/Dorf-O [Sophos]11
Trojan-Downloader.TIBS [PC Tools]11
Win-Trojan/Rootkit.54016 [AhnLab]11
Downloader-ARL [McAfee]10
Downloader-BAI.gen [McAfee]10
Email-Worm.Win32.Luder.a [Kaspersky Lab]10
TROJ_MULP.P [Trend Micro]10
Trojan-Downloader.Win32.Cntr.by [Kaspersky Lab]10
Downloader-BAI!M711 [McAfee]9
WORM_NUWAR.AAL [Trend Micro]9
Generic.dx [McAfee]8
Troj/Dorf-BP, Mal/Dorf-O [Sophos]8
Trojan-Downloader.Small!sd5 [PC Tools]8
Trojan-Downloader.Win32.Small.dam [Kaspersky Lab]8
Email-Worm.Win32.Zhelatin.a [Kaspersky Lab]7
Mal/HckPk-A [Sophos]7
WORM_NUCRP.GEN [Trend Micro]7
Mal_MLWR-5 [Trend Micro]6
Spam-SamBurg [McAfee]6
Troj/DwnLdr-FYD [Sophos]6
W32/Dref-AW [Sophos]6
TROJ_MULP.AA [Trend Micro]5
TROJ_MULP.F [Trend Micro]5
Trojan-Downloader.Small.BET [PC Tools]5
Trojan-Proxy.Lager!sd5 [PC Tools]5
Trojan-Proxy.Win32.Lager.dp [Kaspersky Lab]5
Backdoor:Win32/Nuwar.gen!D [Microsoft]4
Downloader.gen.a [McAfee]4
Downloader-BAI.sys!M711 [McAfee]4
Email-Worm.Win32.Zhelatin.f [Kaspersky Lab]4
New Malware.u [McAfee]4
New Win32.g4 [McAfee]4
Tibs-Packed [McAfee]4
TROJ_MULP.Q [Trend Micro]4
TROJ_NUWAR.AB [Trend Micro]4
TROJ_SMALL.JHZ [Trend Micro]4
Trojan.DL.Small.WKE [PC Tools]4
Trojan.Oderoor.Gen!Pac.3 [PC Tools]4
Trojan:Win32/Vxidl.gen!B [Microsoft]4
Trojan-Downloader.Tibs!sd5 [PC Tools]4
Trojan-Downloader.Win32.Small [Ikarus]4
Trojan-Dropper.Win32.Agent.bbv [Kaspersky Lab]4
Worm:Win32/Nuwar.N@mm!CME711 [Microsoft]4
Downloader-BAC [McAfee]3
Downloader-BAI.sys [McAfee]3
Email-Worm.Win32.Zhelatin.vg [Kaspersky Lab]3
New Malware.bl [McAfee]3
Packed.Win32.Tibs.ab [Kaspersky Lab]3
Packed.Win32.Tibs.cu [Kaspersky Lab]3
Rootkit.Win32.Agent.dh [Kaspersky Lab]3
Tibs [McAfee]3
Troj/Dorf-BA, Mal/TibsPak [Sophos]3
TROJ_DLOADER.ENR [Trend Micro]3
TROJ_TIBS.ANH [Trend Micro]3
Trojan.SpamThru [PC Tools]3
Trojan.Tibs.Gen!Pac.132 [PC Tools]3
Trojan:Win32/Tibs.gen!B [Microsoft]3
Trojan:Win32/Vxidl.gen!dam [Microsoft]3
Trojan-Downloader.Win32.Injecter.ld [Kaspersky Lab]3
TrojanDownloader:Win32/Nuwar.E [Microsoft]3
Trojan-Dropper.Agent [Ikarus]3
Win-Trojan/Xema.variant [AhnLab]3
Cryp_Xed-3 [Trend Micro]2
Email-Worm.Win32.Banwarum [Ikarus]2
Email-Worm.Win32.Zhelatin.ace [Ikarus]2
Email-Worm.Win32.Zhelatin.wq [Ikarus]2
Email-Worm.Win32.Zhelatin.wt [Kaspersky Lab]2
Email-Worm.Win32.Zhelatin.zy [Ikarus]2
Generic Downloader.x [McAfee]2
New Malware.ez [McAfee]2
Rootkit.Win32.Agent.dh [Ikarus]2
Troj/Dorf-Fam, Troj/Dorf-Gen [Sophos]2
TROJ_DLOAD.HC [Trend Micro]2
TROJ_MULP.BZ [Trend Micro]2
TROJ_SMALL.FLF [Trend Micro]2

Trojan.Peacomm [Symantec] is known to be created as:
%System%\a130pui.exe
%System%\a63qa8p.exe
%System%\adirss.exe
%System%\clcbt.exe
%System%\clean10ad-21f.sys
%System%\clean1205-67d5.sys
%System%\clean218b-2a32.sys
%System%\clean23ce-6c7d.sys
%System%\clean248f-297.sys
%System%\clean3d8e-5743.sys
%System%\clean3e4f-6d5c.sys
%System%\clean544a-69a8.sys
%System%\clean55cc-15db.sys
%System%\clean568d-2bf4.sys
%System%\clean580f-5826.sys
%System%\clean5e84-1216.sys
%System%\clean6e0a-546e.sys
%System%\clean76ec-1721.sys
%System%\clean7e28-4cac.sys
%System%\cleanacf-17cd.sys
%System%\cleanb90-2de6.sys
%System%\cojb1qm.exe
%System%\cssrss.exe
%System%\dhgthfg.dll
%System%\diperto1205-67d5.sys
%System%\diperto1c6d-6fb9.sys
%System%\diperto2b04-3c86.sys
%System%\diperto44c4-274c.sys
%System%\diperto5ad6-5353.sys
%System%\diperto5e84-1216.sys
%System%\diperto7844-7cdb.sys
%System%\e5qmi1i.exe
%System%\f661ss7.exe
%System%\g2hq44p.exe
%System%\gr6fso2.exe
%System%\h27vpcl.exe
%System%\h8eg7qh.exe
%System%\hm3mx78.exe
%System%\ijp44tg.exe
%System%\j6erb4k.exe
%System%\jkd845jg.dll
%System%\jukla0s.exe
%System%\kb6kihf.exe
%System%\kernels88.exe
%System%\ku03k28.exe
%System%\lnwin.exe
%System%\nd8pxp8.exe
%System%\rmpwi02.exe
%System%\s7dsf4g.dll
%System%\spooldr.sys
%System%\spoolsvv.exe
%System%\syslodr.sys
%System%\sysrest32.exe
%System%\t0ugpc6.exe
%System%\t4t33ht.exe
%System%\taskdir.exe
%System%\vdo_5816-23e5.sys
%System%\vdo_d19-25d7.sys
%System%\vjevohv.exe
%System%\w7fu04d.exe
%System%\wincom32.sys
%System%\wnms.exe
%System%\wnpm.exe
%System%\wnpms.exe
%System%\xfnx48h.exe
%Temp%\lev-severa-1.exe
%Temp%\winlogan.exe
%UserProfile%\shmsnu1.exe
%Windir%\aromis.exe
%Windir%\kavir.exe
%Windir%\mssecurity.exe
%Windir%\msserv.exe
%Windir%\msvecurity.exe
%Windir%\msvupdater.exe
%Windir%\neos.exe
%Windir%\noskrnl.exe
c:\notepad.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.