Threat Search: 

ThreatExpert's Statistics for Trojan-PWS.OnlineGames.ARun [PC Tools]:

Trojan-PWS.OnlineGames.ARun [PC Tools] is also known as:
Threat AliasNumber of Incidents
PWS-Gamania.gen.a [McAfee]460
Mal/EncPk-CE [Sophos]345
Infostealer.Gampass [Symantec]238
VirTool:WinNT/Vanti.gen!C [Microsoft]210
PWS-LegMir.gen.k.dll [McAfee]194
Hacktool.Rootkit [Symantec]193
PWS-OnlineGames.bl [McAfee]135
Bloodhound.Packed.Jmp [Symantec]116
Generic.dx [McAfee]115
TSPY_ONLINEG.KTP [Trend Micro]108
W32.SillyDC [Symantec]108
PWS-Mmorpg.gen [McAfee]92
Win-Trojan/MalPacked.Gen [AhnLab]89
W32.Gammima.AG [Symantec]75
VirTool:Win32/Vanti.gen!D [Microsoft]68
Cryp_Nsanti-2 [Trend Micro]61
Packer.Malware.NSAnti.X [Ikarus]60
Trojan-GameThief.Win32.OnLineGames [Ikarus]60
VirTool:WinNT/Vanti.gen!B [Microsoft]60
Trojan-GameThief.Win32.OnLineGames.zex [Kaspersky Lab]50
Worm:Win32/Taterf.A.dll [Microsoft]45
Trojan.Onlinegames.Gen!Pac.73 [PC Tools]43
Downloader [Symantec]42
TSPY_ONLINEG.IBU [Trend Micro]42
TSPY_ONLINEGA.GE [Trend Micro]42
Mal/EncPk-CE, Mal/EncPk-DH, Mal/Behav-204 [Sophos]36
Trojan-GameThief.Win32.OnLineGames.zda [Kaspersky Lab]36
Trojan-GameThief.Win32.OnLineGames.zzk [Kaspersky Lab]36
Packed.Win32.NSAnti [Ikarus]34
WORM_LINEAGE.IQ [Trend Micro]30
TSPY_ONLINEG.IZO [Trend Micro]24
TSPY_ONLINEGA.FF [Trend Micro]24
Mal/Generic-A [Sophos]23
Rootkit.Win32.Vanti.gv [Ikarus]22
Trojan.Lineage.Gen!Pac.3 [PC Tools]22
Trojan-PSW.Win32.OnLineGames.zex [Kaspersky Lab]20
New Malware.hz [McAfee]18
Trojan-PSW.Win32.OnLineGames.yky [Kaspersky Lab]18
Trojan-PWS.Win32.OnLineGames [Ikarus]18
Generic PWS.y [McAfee]17
TSPY_LINEAGE.MM [Trend Micro]16
TSPY_ONLINEG.ICI [Trend Micro]16
WORM_ONLINEG.DSO [Trend Micro]16
Trojan-PSW.Win32.OnLineGames.aceb [Kaspersky Lab]15
WORM_LINEAGE.BV [Trend Micro]15
WORM_ONLINEG.HNJ [Trend Micro]15
Generic PWS.ak [McAfee]12
Trojan-GameThief.Win32.OnLineGames.zzl [Kaspersky Lab]12
Trojan-PSW.Win32.OnLineGames.rce [Kaspersky Lab]12
Trojan-PSW.Win32.OnLineGames.zzl [Kaspersky Lab]12
TSPY_ONLINEG.RP [Trend Micro]12
Worm:Win32/Taterf.H.dll [Microsoft]12
WORM_NSANTI.CE [Trend Micro]12
Generic PWS.d [McAfee]10
Packed.Win32.PolyCrypt.h [Ikarus]10
WORM_AUTORUN.BGN [Trend Micro]10
Mal/Behav-204, Mal/EncPk-DH, Mal/EncPk-CE [Sophos]9
Packed.Win32.Krap [Ikarus]9
Troj/Virtum-Gen [Sophos]9
Trojan-GameThief.Win32.OnLineGames.yze [Kaspersky Lab]9
Trojan-PSW.Win32.OnLineGames.ren [Kaspersky Lab]9
Trojan-PSW.Win32.OnLineGames.zda [Kaspersky Lab]9
Trojan-PSW.Win32.OnLineGames.zzk [Kaspersky Lab]9
TSPY_LEGMIR.APG [Trend Micro]9
TSPY_LEGMIR.SR [Trend Micro]9
TSPY_LEGMIR.SS [Trend Micro]9
TSPY_ONLINEG.IBO [Trend Micro]9
TSPY_ONLINEG.SSC [Trend Micro]9
Worm.Win32.AutoRun.cea [Kaspersky Lab]9
WORM_AUTORUN.APT [Trend Micro]9
WORM_AUTORUN.AYI [Trend Micro]9
Packer.Malware.NSAnti.V [Ikarus]8
Trojan-GameThief.Win32.OnLineGames.xlx [Kaspersky Lab]8
Worm.Win32.AutoRun.clb [Kaspersky Lab]8
WORM_AUTORUN.JF [Trend Micro]8
Infostealer.Perfwo [Symantec]7
Packed.Win32.Krap.b [Kaspersky Lab]7
Trojan Horse [Symantec]7
Trojan-PSW.Win32.OnLineGames.syv [Kaspersky Lab]7
Trojan-PWS.OnlineGames!ct [PC Tools]7
W32.Gammima [Symantec]7
PWS:Win32/Frethog.D [Microsoft]6
PWS-LegMir.gen.k [McAfee]6
Trojan.Win32.Inject.r [Kaspersky Lab]6
Trojan.Win32.Pakes.cip [Kaspersky Lab]6
Trojan-GameThief.Win32.OnLineGames.tdc [Kaspersky Lab]6
Trojan-GameThief.Win32.OnLineGames.wkn [Kaspersky Lab]6
Trojan-GameThief.Win32.OnLineGames.yky [Kaspersky Lab]6
Trojan-PSW.Win32.OnLineGames.amrb [Kaspersky Lab]6
Trojan-PSW.Win32.OnLineGames.wkn [Kaspersky Lab]6
Trojan-PSW.Win32.OnLineGames.yuf [Kaspersky Lab]6
TSPY_ONLINEG.OZH [Trend Micro]6
TSPY_ONLINEG.OZX [Trend Micro]6
TSPY_ONLINEG.QCX [Trend Micro]6
WORM_AUTORUN.UL [Trend Micro]6
Infostealer.Perfwo.B [Symantec]5
Trojan.Win32.Pakes.cim [Kaspersky Lab]5
Trojan-PSW.Win32.OnLineGames.urs [Kaspersky Lab]5
VirTool:Win32/Vanti.dll [Microsoft]5
Dropper/Rootkit.25794 [AhnLab]4

Trojan-PWS.OnlineGames.ARun [PC Tools] is known to be created as:
%System%\amvo.exe
%System%\amvo0.dll
%System%\amvo1.dll
%System%\kav320.dll
%System%\kav322.dll
%System%\mmvo.exe
%System%\mmvo0.dll
%System%\mmvo1.dll
%Temp%\27vk7bv.dll
%Temp%\28e9ppia.dll
%Temp%\2hf4znzq.dll
%Temp%\2m9mdmy.dll
%Temp%\2nux4.dll
%Temp%\2t.dll
%Temp%\2uhho.dll
%Temp%\2xdwibt.dll
%Temp%\2xsj4pgx.dll
%Temp%\2ypri7.dll
%Temp%\4.dll
%Temp%\48d.dll
%Temp%\4fgu.dll
%Temp%\4iv.dll
%Temp%\4keteh.dll
%Temp%\4mprv722.dll
%Temp%\4vepxtuf.dll
%Temp%\4xm9j.dll
%Temp%\4y5u.dll
%Temp%\4yz4sj.dll
%Temp%\5.dll
%Temp%\54j.dll
%Temp%\57heb9v5.dll
%Temp%\58.dll
%Temp%\58b95y4o.dll
%Temp%\59.dll
%Temp%\5a9av.dll
%Temp%\5aa.dll
%Temp%\5copn.dll
%Temp%\5ndc.dll
%Temp%\5o.dll
%Temp%\5qno.dll
%Temp%\5yswe.dll
%Temp%\757yropw.dll
%Temp%\75t7.dll
%Temp%\7myr8.dll
%Temp%\7rhy.dll
%Temp%\7rt.dll
%Temp%\7uw44.dll
%Temp%\7x.dll
%Temp%\7xw.dll
%Temp%\7yo8.dll
%Temp%\82.dll
%Temp%\88b4ibhq.dll
%Temp%\8jm.dll
%Temp%\8lm5ns.dll
%Temp%\8mn.dll
%Temp%\8qv5cvkq.dll
%Temp%\9.dll
%Temp%\97.dll
%Temp%\9b2ek.dll
%Temp%\9e7ktl.dll
%Temp%\9f.dll
%Temp%\9f5.dll
%Temp%\9fcdh.dll
%Temp%\9ht.dll
%Temp%\9s.dll
%Temp%\9sky8pia.dll
%Temp%\9sob2.dll
%Temp%\9szq7sq.dll
%Temp%\9xqhobd.dll
%Temp%\a.dll
%Temp%\a5lg8x2t.dll
%Temp%\aajc.dll
%Temp%\ac7.dll
%Temp%\ad.dll
%Temp%\ae.dll
%Temp%\aeu8.dll
%Temp%\ajarqo.dll
%Temp%\ajq.dll
%Temp%\an.dll
%Temp%\aqb2.dll
%Temp%\arr.dll
%Temp%\as8ffpas.dll
%Temp%\asqhbf.dll
%Temp%\aupg.dll
%Temp%\awwdcbb.dll
%Temp%\ayj4.dll
%Temp%\b2kgiog.dll
%Temp%\b7exnkft.dll
%Temp%\b7ggav8a.dll
%Temp%\bc.dll
%Temp%\bmdhu.dll
%Temp%\bpvcrq29.dll
%Temp%\c.dll
%Temp%\cd.dll
%Temp%\cfmwfbi.dll
%Temp%\cm29nn.dll
%Temp%\cny8p.dll
%Temp%\cr9wdn.dll
%Temp%\cx.dll
%Temp%\cz8.dll
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).