Threat Search: 

ThreatExpert's Statistics for Trojan.Rootkit [Ikarus]:

Trojan.Rootkit [Ikarus] is also known as:
Threat AliasNumber of Incidents
Hacktool.Rootkit [Symantec]182
BackDoor-CKB.sys [McAfee]174
Backdoor:WinNT/PcClient.gen [Microsoft]153
Trojan-Dropper.Win32.Mudrop.mk [Kaspersky Lab]135
Dropper/Mudrop.5632 [AhnLab]72
Troj/RootF-Gen [Sophos]72
Hacktool.Rootkit!sd6 [PC Tools]70
Trojan-Downloader.Delf.ADY [PC Tools]36
Bloodhound.Unknown [Symantec]34
Mal/Generic-A [Sophos]29
Trojan.Farfli [Symantec]26
Trojan Horse [Symantec]24
Generic.dx [McAfee]22
Trojan-Dropper.Win32.Mudrop.kv [Kaspersky Lab]20
Email-Worm.Win32.Bagle.adk [Kaspersky Lab]19
Email-Worm.Bagle!sd6 [PC Tools]18
Trojan:WinNT/Koutodoor.A [Microsoft]18
Trojan-Downloader.Adload.HO [PC Tools]18
Trojan-Dropper.Mudrop!ct [PC Tools]18
Email-Worm.Win32.Bagle [Ikarus]16
Troj/Bckdr-QQV [Sophos]16
BackDoor-DTL.sys [McAfee]8
TROJ_FARFLI.FOZQ [Trend Micro]8
Win32/Bagle.worm.2112 [AhnLab]8
Generic BackDoor [McAfee]4
Generic Downloader.x [McAfee]4
TrojanDownloader:WinNT/Nupylos.A [Microsoft]4
Win-Trojan/Rootkit.16512 [AhnLab]4
Win-Trojan/Xema.variant [AhnLab]4
BackDoor-DSN!sys [McAfee]3
Trojan:WinNT/Chon.gen!A [Microsoft]3
Worm:Win32/Forput!rts [Microsoft]3
Backdoor.Trojan [Symantec]2
Downloader-BLZ [McAfee]2
Hacktool.Rootkit [PC Tools]2
Infostealer.Gampass [Symantec]2
Trojan.Win32.SpBot [Ikarus]2
Trojan.Win32.SpBot.q [Kaspersky Lab]2
Trojan.Win32.SpBot.t [Kaspersky Lab]2
Trojan:Win32/Cinmus.I [Microsoft]2
TrojanDownloader:Win32/Ahgepad.A [Microsoft]2
Trojan-GameThief.Win32.Magania.alst [Kaspersky Lab]2
Adware.Cinmus [PC Tools]1
Adware-Cinmus [McAfee]1
Adware-Cinmus!sys.gen [McAfee]1
Backdoor.Haxdoor [Symantec]1
Backdoor.Rustock.B [Symantec]1
Backdoor.Trojan [PC Tools]1
Backdoor.Win32.Agent.aofm [Kaspersky Lab]1
Backdoor.Win32.Agent.aofy [Kaspersky Lab]1
Backdoor.Win32.NewRest.ao [Kaspersky Lab]1
Backdoor.Win32.PcClient.aif [Kaspersky Lab]1
Backdoor.Win32.PcClient.auf [Kaspersky Lab]1
Backdoor.Win32.PcClient.cfu [Kaspersky Lab]1
Backdoor.Win32.PcClient.xy [Kaspersky Lab]1
Backdoor:Win32/PcClient.XY [Microsoft]1
Backdoor:WinNT/Nuwar.B!sys [Microsoft]1
Backdoor:WinNT/Rustock.E [Microsoft]1
Backdoor:WinNT/Rustock.F [Microsoft]1
Backdoor:WinNT/Rustock.H [Microsoft]1
BackDoor-BAC.gen [McAfee]1
Dropper/Koobface.19456 [AhnLab]1
Email-Worm.Win32.Zhelatin.pz [Kaspersky Lab]1
Generic BackDoor!cn [McAfee]1
Generic BackDoor!fu [McAfee]1
Generic Rootkit.g [McAfee]1
Generic Rootkit.z [McAfee]1
Generic.dx!cmk [McAfee]1
Generic.dx!hkz [McAfee]1
Generic.dx!vx [McAfee]1
Mal/Behav-204 [Sophos]1
Mal/Kouto-B [Sophos]1
Mal/RootKit-Fam [Sophos]1
Mal/TDSSPack-G [Sophos]1
Mal/UnkPack-Fam [Sophos]1
not-a-virus:AdWare.Win32.Cinmus.ehu [Kaspersky Lab]1
not-a-virus:AdWare.Win32.Cinmus.syk [Kaspersky Lab]1
PWS-Mmorpg.gen [McAfee]1
Rootkit.Cinmus.Gen.6 [PC Tools]1
Rootkit.Win32.Agent.ask [Kaspersky Lab]1
Rootkit.Win32.Agent.iph [Kaspersky Lab]1
Rootkit.Win32.Agent.irr [Kaspersky Lab]1
Rootkit.Win32.Agent.lya [Kaspersky Lab]1
Rootkit.Win32.Agent.mfx [Kaspersky Lab]1
Rootkit.Win32.Agent.wqz [Kaspersky Lab]1
Troj/Dorf-Fam [Sophos]1
Troj/NtRootK-ED [Sophos]1
Troj/NTRootk-FE [Sophos]1
Troj/RKReg-Fam [Sophos]1
Troj/Rootkit-ET [Sophos]1
TROJ_DLOADR.FRFL [Trend Micro]1
Trojan.Cinmeng [Symantec]1
Trojan.DL.Tibs.JQ [PC Tools]1
Trojan.Dropper [Symantec]1
Trojan.Peacomm.D [Symantec]1
Trojan.SpBot!sd6 [PC Tools]1
Trojan.Win32.Agent.aqlb [Kaspersky Lab]1
Trojan:WinNT/Padstew.A [Microsoft]1
Trojan-Downloader.Win32.Agent.agtm [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.aqsw [Kaspersky Lab]1

Trojan.Rootkit [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China5
Russian Federation2
Australia1

Trojan.Rootkit [Ikarus] is known to be created as:
%System%\drivers\815ea49d.sys
%System%\drivers\acpidisk.sys
%System%\drivers\akvnlz.sys
%System%\drivers\apnm.sys
%System%\drivers\asyncmacq.sys
%System%\drivers\blziadecgavtud.sys
%System%\drivers\chqyvb.sys
%System%\drivers\crdisk.sys
%System%\drivers\cury.sys
%System%\drivers\dtqzvd.sys
%System%\drivers\ekvmye.sys
%System%\drivers\fkhzbs.sys
%System%\drivers\fkp.sys
%System%\drivers\gcywxb.sys
%System%\drivers\grtloc.sys
%System%\drivers\hrdp.sys
%System%\drivers\ioozyw.sys
%System%\drivers\jduziv.sys
%System%\drivers\jrai.sys
%System%\drivers\mhu.sys
%System%\drivers\msfiwt.sys
%System%\drivers\nup.sys
%System%\drivers\nxanfo.sys
%System%\drivers\okborwg.sys
%System%\drivers\ordwnd.sys
%System%\drivers\pphrq.sys
%System%\drivers\qynhmhn.sys
%System%\drivers\resdcn.sys
%System%\drivers\rfmdpi.sys
%System%\drivers\rkvxyq.sys
%System%\drivers\rmwdpa.sys
%System%\drivers\rugur.sys
%System%\drivers\rxerr.sys
%System%\drivers\ryeayqm.sys
%System%\drivers\siofvf.sys
%System%\drivers\tesafe.sys
%System%\drivers\tkieqm.sys
%System%\drivers\twabra.sys
%System%\drivers\uchlpj.sys
%System%\drivers\ulltot.sys
%System%\drivers\uvybeq.sys
%System%\drivers\wbgawg.sys
%System%\drivers\wmrtph.sys
%System%\drivers\wudfrd.sys
%System%\drivers\wuiylc.sys
%System%\drivers\wzehsb.sys
%System%\drivers\xdbger.sys
%System%\drivers\xjlbb.sys
%System%\drivers\xuxtv.sys
%System%\drivers\ybjh.sys
%System%\drivers\ybyyjp.sys
%System%\drivers\yirrc.sys
%System%\kirjtkkd1472-7098.sys
%System%\kirjtkkd1533-6b2.sys
%System%\kirjtkkd2009-7dff.sys
%System%\kirjtkkd224c-404b.sys
%System%\kirjtkkd23ce-6c7d.sys
%System%\kirjtkkd248f-297.sys
%System%\kirjtkkd3d8e-5743.sys
%System%\kirjtkkd3e4f-6d5c.sys
%System%\kirjtkkd4f96-59b.sys
%System%\kirjtkkd5389-538f.sys
%System%\kirjtkkd568d-2bf4.sys
%System%\kirjtkkd574e-420d.sys
%System%\kirjtkkd580f-5826.sys
%System%\kirjtkkd6c88-283c.sys
%System%\kirjtkkd6d49-3e55.sys
%System%\kirjtkkd6e0a-546e.sys
%System%\kirjtkkd704d-16ba.sys
%System%\kirjtkkd710e-2cd3.sys
%System%\kirjtkkd71cf-42ec.sys
%System%\kirjtkkd76ec-1721.sys
%System%\kirjtkkd77ad-2d3a.sys
%System%\kirjtkkd7cb-3f68.sys
%System%\kirjtkkda0e-1b4.sys
%System%\kirjtkkdacf-17cd.sys
%System%\osam\osam.exe
%System%\pcmstub.sys
%System%\sys0_32.dll
%System%\winddk.sys
%System%\xxoufw95.dll
%Windir%\nclock.sys
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.