Threat Search: 

ThreatExpert's Statistics for Trojan-PWS.Win32.Agent [Ikarus]:

Trojan-PWS.Win32.Agent [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan-PSW.Agent!sd6 [PC Tools]1,450
W32.Pagipef [Symantec]1,292
PE_PAGIPEF.BR-O [Trend Micro]1,241
Mal/Emogen-Y [Sophos]680
Trojan-PSW.Win32.Agent.acp [Kaspersky Lab]663
Infostealer.Gampass [Symantec]409
Mal/Generic-A [Sophos]368
Trojan-PSW.Win32.Agent.lsc [Kaspersky Lab]324
Win-Trojan/Diskgen.32256 [AhnLab]255
PWS:Win32/Tidola.A [Microsoft]246
Trojan-PSW.Win32.Agent.lta [Kaspersky Lab]171
Win-Trojan/Agent.535552.F [AhnLab]148
Generic PWS.y [McAfee]142
PWS:Win32/Stealer.M [Microsoft]140
Infostealer [Symantec]129
TrojanDropper:Win32/Tidola.A [Microsoft]114
Trojan-PWS.Win32.Agent.acp [Ikarus]102
Trojan-PWS.Agent!ct [PC Tools]68
Mal/Autorun-TR, Mal/Emogen-U [Sophos]65
Trojan.Win32.Agent.cccr [Kaspersky Lab]63
Win-Trojan/Agent.41984.KC [AhnLab]62
PWS-IMThief.gen.a [McAfee]61
Mal/LineDLL-B [Sophos]55
Spy-Agent.ef [McAfee]54
TrojanSpy:Win32/Agent [Microsoft]53
PWS-Gamania.dll [McAfee]52
Trojan-PWS.Agent!sd6 [PC Tools]52
Trojan Horse [Symantec]49
Mal/Generic-E [Sophos]48
Mal/Autorun-TR [Sophos]42
Win-Trojan/Xema.variant [AhnLab]30
Trojan-PSW.Win32.Agent.mge [Kaspersky Lab]27
Infostealer.Onlinegame [Symantec]17
Downloader [Symantec]15
PWS:Win32/OnLineGames.CY [Microsoft]15
Mal/Emogen-U [Sophos]14
Trojan-PSW.Win32.Agent.oll [Kaspersky Lab]14
Trojan-Spy.Gampass!sd6 [PC Tools]14
W32.Spybot.Worm [Symantec]14
Generic Downloader.x [McAfee]13
Mal/Packer, Mal/EncPk-BW [Sophos]13
Trojan-Downloader.BHO!sd6 [PC Tools]13
Trojan-PSW.Win32.Agent.mcx [Kaspersky Lab]12
Win-Trojan/QQPass.Gen [AhnLab]12
Mal/Inet-Fam [Sophos]11
Troj/Spy-BU [Sophos]11
Virus.Win32.Induc.a [Kaspersky Lab]11
Mal/Behav-302 [Sophos]10
PWS:Win32/Dozmot.A [Microsoft]10
Trojan-PSW.Win32.Agent.llw [Kaspersky Lab]10
Trojan-PSW.Win32.Agent.mox [Kaspersky Lab]9
Trojan-PSW.Win32.Agent.nue [Kaspersky Lab]9
W32/Sdbot.worm [McAfee]9
W32/Spybot.worm.gen [McAfee]9
Backdoor.Win32.SdBot.kef [Kaspersky Lab]8
Infostealer.Bancos [Symantec]8
Win32/ExprPacked.suspicious [AhnLab]7
Backdoor.IRCBot!sd6 [PC Tools]6
Infostealer.Wowcraft [Symantec]6
PWS-OnlineGames.e [McAfee]6
Troj/Agent-LVF [Sophos]6
Trojan-PSW.Win32.Agent.ldt [Kaspersky Lab]6
Trojan-PSW.Win32.Agent.lso [Kaspersky Lab]6
Trojan-PSW.Win32.Agent.mii [Kaspersky Lab]6
Win-Trojan/Agent.17408.PK [AhnLab]6
Backdoor.Trojan [Symantec]5
Infostealer.Banker.C [Symantec]5
Trojan.Generic [PC Tools]5
Trojan-PSW.Generic [PC Tools]5
Trojan-PSW.Win32.Agent.kcg [Kaspersky Lab]5
Trojan-PSW.Win32.Agent.mbz [Kaspersky Lab]5
VirTool:Win32/DelfInject.gen!AC [Microsoft]5
Virus:Win32/Induc.A [Microsoft]5
Win32/MalPackedB.suspicious [AhnLab]5
Win-Trojan/Agent.14552.I [AhnLab]5
Generic.dx [McAfee]4
Mal/Behav-290, Mal/Dropper-O [Sophos]4
Packer.Expressor [Ikarus]4
PWS-Banker [McAfee]4
Trojan.Win32.Buzus.awke [Kaspersky Lab]4
Trojan-Downloader.Win32.BHO.aad [Kaspersky Lab]4
Trojan-Downloader.Win32.BHO.aam [Kaspersky Lab]4
Trojan-Downloader.Win32.BHO.acr [Kaspersky Lab]4
Trojan-Downloader.Win32.BHO.bxr [Kaspersky Lab]4
Trojan-Downloader.Win32.BHO.kis [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.aiu [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.aiw [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.ldc [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.llg [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.mcv [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.msc [Kaspersky Lab]4
Trojan-PSW.Win32.Agent.ozo [Kaspersky Lab]4
TrojanSpy:Win32/Maran.gen!E [Microsoft]4
VirTool.Win32.DelfInject [Ikarus]4
W32/Mondera [McAfee]4
Win-Trojan/Agent.10752.GD [AhnLab]4
Win-Trojan/Agent.17408.KA [AhnLab]4
Win-Trojan/Agent.19968.MA [AhnLab]4
Win-Trojan/Agent.32768.VX [AhnLab]4
Win-Trojan/Psw.18656 [AhnLab]4

Trojan-PWS.Win32.Agent [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Brazil40
Russian Federation32
United Kingdom9
China8
Germany6
France4
Ukraine4
Italy3
Switzerland3
Israel2
Belgium1
Bulgaria1
Finland1
Netherlands1
Poland1
Sweden1
Turkey1

Trojan-PWS.Win32.Agent [Ikarus] is known to be created as:
%AppData%\d3.dll
%AppData%\d6.dll
%AppData%\hd.dll
%AppData%\microsoft\windows\winlogon.exe
%AppData%\rsload.exe
%AppData%\s3.dll
%AppData%\set7.dll
%AppData%\t1.dll
%AppData%\tip.dll
%AppData%\winrar3.80pro.exe
%FontsDir%\comres.dll
%ProgramFiles%\common files\system\webcheck.dll
%ProgramFiles%\internet explorer\setupapi.dll
%System%\adtsh.dll
%System%\aj32.dll
%System%\asfp2.dll
%System%\bluflt.exe
%System%\csp2.dll
%System%\dblcjdv.exe
%System%\dcdjh.exe
%System%\dexas32.dll
%System%\dnsq.dll
%System%\drivers\390.exe
%System%\drivers\468.exe
%System%\fiod.dll
%System%\gcomd32.dll
%System%\hf0008.dll
%System%\imgpsup.dll
%System%\infow32.dll
%System%\ipv6sp.dll
%System%\jetaccss.dll
%System%\jx8007.dll
%System%\kbdqib.dll
%System%\kcms.dll
%System%\keygenpk.exe
%System%\king1.dll
%System%\kjsvc32.dll
%System%\kmsvc32.dll
%System%\kvalsda.exe
%System%\linkvc5.dll
%System%\lsyvjl.exe
%System%\mail.exe
%System%\mhgenx.exe
%System%\mlbm.exe
%System%\mutx_built_ff.exe
%System%\nli.exe
%System%\nods32.dll
%System%\premiumpk.exe
%System%\qqnhat.exe
%System%\qtplugin.exe
%System%\rbsgam.dll
%System%\savec32.dll
%System%\siemens32.dll
%System%\svchstb.dll
%System%\trinf32.dll
%System%\trod32.dll
%System%\trsh.dll
%System%\utrmk.dll
%System%\vgf32.dll
%System%\video.sys
%System%\xit.exe
%System%\xlk.dll
%Temp%\1.exe
%Temp%\16.exe
%Temp%\162498.exe
%Temp%\2.exe
%Temp%\2416xxx.dll
%Temp%\256xxx.dll
%Temp%\271xxx.dll
%Temp%\305344.exe
%Temp%\347xxx.dll
%Temp%\4252xxx.dll
%Temp%\451704.exe
%Temp%\540xxx.dll
%Temp%\611xxx.dll
%Temp%\63.exe
%Temp%\775739.exe
%Temp%\881904.exe
%Temp%\97xxx.dll
%Temp%\crack.exe
%Temp%\crypted.exe
%Temp%\cs5.exe
%Temp%\decrypted.exe
%Temp%\desert_i_w.exe
%Temp%\dldsetup.exe
%Temp%\dnfupdate.exe
%Temp%\file_name.exe
%Temp%\file0.exe
%Temp%\file1.exe
%Temp%\gamepatch.dll
%Temp%\gliderdeploy.exe
%Temp%\hh_stealer.exe
%Temp%\inject.exe
%Temp%\istealer 4.0\iloader.exe
%Temp%\ixp000.tmp\2.exe
%Temp%\ixp000.tmp\bubble.exe
%Temp%\ixp000.tmp\byshy.exe
%Temp%\ixp000.tmp\keygen.exe
%Temp%\ixp000.tmp\nodgen.exe
%Temp%\ixp000.tmp\stealer.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).