Threat Search: 

ThreatExpert's Statistics for Trojan-Spy.Win32.Small [Ikarus]:

Trojan-Spy.Win32.Small [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan-Spy.Win32.Agent.sc [Kaspersky Lab]271
Infostealer.Onlinegame [Symantec]266
Trojan-Spy.Agent!sd6 [PC Tools]225
TrojanDownloader:Win32/Agent.XD [Microsoft]56
Downloader-AAT [McAfee]54
Mal/EncPk-CR, Mal/Behav-222 [Sophos]54
Trojan-Downloader.Iciko!sd6 [PC Tools]30
Trojan-Spy.Win32.Agent [Ikarus]30
Generic PWS.y [McAfee]24
Trojan-Downloader.Win32.Iciko.jv [Kaspersky Lab]20
Trojan Horse [Symantec]15
Trojan-Downloader.Win32.Iciko.kd [Kaspersky Lab]15
Mal/Generic-A [Sophos]11
Infostealer [Symantec]10
Trojan-Spy.Win32.Small.cx [Kaspersky Lab]6
Trojan-Spy.Win32.Small.cae [Kaspersky Lab]5
Trojan-Spy.Win32.Small.dg [Kaspersky Lab]4
Trojan.Anserin [Symantec]3
Trojan-Spy.Onlinegame!sd6 [PC Tools]3
Constructor.Win32.Iciko.a [Kaspersky Lab]2
Constructor/Iciko.190464 [AhnLab]2
Downloader [Symantec]2
Mal/Packer [Sophos]2
Mal_OLGM-6 [Trend Micro]2
PWS-Banker.al [McAfee]2
PWS-JA [McAfee]2
Troj/Torpig-J [Sophos]2
Trojan:Win32/Malagent [Microsoft]2
Trojan:Win32/winstall [Microsoft]2
Trojan-GameThief.Win32.OnLineGames.umxa [Kaspersky Lab]2
Trojan-PWS.OnlineGames.AHRG [PC Tools]2
TrojanSpy.Small.FG [PC Tools]2
Trojan-Spy.Win32.Small.ek [Kaspersky Lab]2
TrojanSpy:Win32/Small [Microsoft]2
Win-Trojan/Downloader.13088.B [AhnLab]2
Win-Trojan/Downloader.14624.C [AhnLab]2
Backdoor.Prorat [Symantec]1
BehavesLike [Ikarus]1
Constructor.Iciko!sd6 [PC Tools]1
Constructor.Win32.Iciko.d [Kaspersky Lab]1
Constructor/Iciko.193536 [AhnLab]1
Downloader.Generic [PC Tools]1
Generic PWS.y!k [McAfee]1
Generic.cd [McAfee]1
Infostealer.Gampass [Symantec]1
Keylog-ZKL [McAfee]1
Mal/Behav-291 [Sophos]1
Mal/ComDrop-A [Sophos]1
Mal/DelpDldr-C [Sophos]1
PE_CORELINK.C-1 [Trend Micro]1
PWS:Win32/Jomloon.E [Microsoft]1
PWS:Win32/Sinowal [Microsoft]1
PWS-Mmorpg.gen [McAfee]1
PWS-OnlineGames.eh [McAfee]1
Troj/Bckdr-QNI [Sophos]1
Troj/Keylog-BL [Sophos]1
Troj/Torpig-AJ [Sophos]1
Troj/Torpig-Gen [Sophos]1
TROJ_JA.G [Trend Micro]1
Trojan.Agent.BYYZ [PC Tools]1
Trojan.Win32.Agent.bkwm [Kaspersky Lab]1
Trojan:Win32/Comotor.A!dll [Microsoft]1
Trojan:Win32/Harnbrush.A [Microsoft]1
Trojan-Downloader.Win32.Iciko.ad [Kaspersky Lab]1
Trojan-Downloader.Win32.Iciko.jq [Kaspersky Lab]1
Trojan-GameThief.Win32.OnLineGames.umwv [Kaspersky Lab]1
Trojan-Spy.Small!ct [PC Tools]1
Trojan-Spy.Small!sd5 [PC Tools]1
Trojan-Spy.Small.EK [PC Tools]1
Trojan-Spy.Win32.Small.btx [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cah [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cak [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cbr [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cem [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cgb [Kaspersky Lab]1
Trojan-Spy.Win32.Small.cr [Kaspersky Lab]1
Virus.Win32.Alman.b [Kaspersky Lab]1
Virus:Win32/Almanahe.B [Microsoft]1
W32.Almanahe.B!inf [Symantec]1
W32/Almanahe.c [McAfee]1
W32/Alman-C [Sophos]1
Win32.Alman.B [PC Tools]1
Win-Trojan/Agent.28672.LT [AhnLab]1
Win-Trojan/Agent.45056.AMM [AhnLab]1
Win-Trojan/Downloader.1024.AF [AhnLab]1
Win-Trojan/Downloader.10752.KH [AhnLab]1
Win-Trojan/Downloader.28672.KU [AhnLab]1
Win-Trojan/Downloader.3584.DU [AhnLab]1
Win-Trojan/Xema.variant [AhnLab]1

Trojan-Spy.Win32.Small [Ikarus] has the following possible country of origin:
OriginNumber of Incidents
China281

Trojan-Spy.Win32.Small [Ikarus] is known to be created as:
%FontsDir%\comres.dll
%ProgramFiles%\flyos\keylogger detector\keylogger1\keylogv1.exe
%System%\builder.exe
%System%\crypter.exe
%System%\eecrpx.dll
%System%\flashcln32.dll
%System%\spoo1ss.com
%System%\spoo1ss.exe
%System%\wkoy.dll
%Temp%\mnjm.exe
%Temp%\ndjd.exe
%Temp%\spir8t.exe
%Temp%\svchost.exe
%Temp%\system.exe
%Windir%\soni.exe
c:\spirit.exe
Notes:
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.