Threat Search: 

ThreatExpert's Statistics for Trojan.Win32.Crypt [Ikarus]:

Trojan.Win32.Crypt [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan.Win32.Crypt.aqt [Kaspersky Lab]529
Trojan.Crypt!sd6 [PC Tools]303
W32.Spybot.Worm [Symantec]256
Troj/Agent-JKY [Sophos]253
Generic.dx [McAfee]233
Win-Trojan/Xema.variant [AhnLab]141
Backdoor:Win32/Ursap!rts [Microsoft]92
Virus:Win32/Sality.AM [Microsoft]56
W32.Sality.AE [Symantec]56
Virus.Win32.Sality.aa [Kaspersky Lab]54
Backdoor:Win32/IRCbot!rts [Microsoft]46
W32/Sality.gen [McAfee]39
W32/Sality-AM [Sophos]38
PE_SALITY.DAM [Trend Micro]35
Mal/Sality-B [Sophos]20
PE_SALITY.BU-O [Trend Micro]16
Win32/Kashu.B [AhnLab]16
W32/Sality.ao [McAfee]12
Trojan Horse [Symantec]8
Mal/Generic-A [Sophos]7
Trojan.Win32.Crypt.ayc [Kaspersky Lab]4
W32/Sality.aq [McAfee]4
FakeAlert-AG.gen.b [McAfee]3
Hacktool [Symantec]3
Mal/Pushdo-A [Sophos]3
Trojan.Renos.Gen!Pac.10 [PC Tools]3
Trojan:Win32/Meredrop [Microsoft]3
Downloader-AQW [McAfee]2
Generic Dropper!dw [McAfee]2
Mal/EncPk-EQ [Sophos]2
Mal/EncPk-EX [Sophos]2
Mal/VB-Z [Sophos]2
Suspicious.MH690 [Symantec]2
Troj/Renos-CF [Sophos]2
TROJ_DLOAD.DV [Trend Micro]2
Trojan.Pandex [Symantec]2
Trojan.Win32.Crypt.ait [Kaspersky Lab]2
Trojan.Win32.Crypt.avi [Kaspersky Lab]2
Trojan.Win32.Crypt.gw [Kaspersky Lab]2
Trojan.Win32.Crypt.mv [Kaspersky Lab]2
TrojanDownloader:Win32/Renos [Microsoft]2
TrojanDropper:Win32/Cutwail.AL [Microsoft]2
TrojanDropper:Win32/Renos.R [Microsoft]2
TrojanSpy:Win32/Logsnif.FH [Microsoft]2
VirTool:Win32/Geycript.A [Microsoft]2
Backdoor.Graybird [PC Tools]1
Backdoor.Graybird [Symantec]1
Backdoor.IRCBot!sd6 [PC Tools]1
Backdoor.Tidserv [Symantec]1
Backdoor.Trojan [Symantec]1
Backdoor.Win32.Hupigon.mzc [Kaspersky Lab]1
Backdoor.Win32.VanBot.qq [Kaspersky Lab]1
Backdoor:Win32/Poison.M [Microsoft]1
BackDoor-DOQ.gen.d [McAfee]1
Downloader [Symantec]1
Email-Worm.Win32.Runouce.b [Kaspersky Lab]1
FakeAlert-AG.gen.c [McAfee]1
Generic Dropper [McAfee]1
Generic FakeAlert.a [McAfee]1
Generic PUP.z [McAfee]1
Generic PWS.ak [McAfee]1
Generic.dx!cd [McAfee]1
Hacktool.Rootkit [Symantec]1
Infostealer.Gampass [Symantec]1
I-Worm.Chir.B [PC Tools]1
Mal/Behav-023 [Sophos]1
Mal/Behav-160, Mal/Emogen-E [Sophos]1
Mal/Frethog-B [Sophos]1
Mal/Generic-E [Sophos]1
Mal_Banker [Trend Micro]1
Packed.Generic.67 [Symantec]1
PE_Chir.B [Trend Micro]1
PE_CORELINK.C-1 [Trend Micro]1
PE_PARITE.A [Trend Micro]1
PE_SALITY.BU-1 [Trend Micro]1
Spy-Agent.dj [McAfee]1
Troj/FakeAle-FG [Sophos]1
Troj/Inject-IG [Sophos]1
Troj/Virtum-Gen [Sophos]1
TROJ_RENOS.YP [Trend Micro]1
Trojan.Ozdok [Symantec]1
Trojan.Virtumonde [PC Tools]1
Trojan.Win32.Crypt.aby [Kaspersky Lab]1
Trojan.Win32.Crypt.ack [Kaspersky Lab]1
Trojan.Win32.Crypt.aka [Kaspersky Lab]1
Trojan.Win32.Crypt.ame [Kaspersky Lab]1
Trojan.Win32.Crypt.beh [Kaspersky Lab]1
Trojan.Win32.Crypt.cz [Kaspersky Lab]1
Trojan.Win32.Crypt.db [Kaspersky Lab]1
Trojan.Win32.Crypt.ef [Kaspersky Lab]1
Trojan.Win32.Crypt.lh [Kaspersky Lab]1
Trojan.Win32.Crypt.uq [Kaspersky Lab]1
Trojan.Win32.Crypt.zv [Kaspersky Lab]1
Trojan.Win32.Crypt.zw [Kaspersky Lab]1
Trojan:Win32/Agent.C [Microsoft]1
Trojan:Win32/VB.HO [Microsoft]1
Trojan:Win32/Wantvi.I [Microsoft]1
Trojan-Dropper.Win32.VB.isa [Kaspersky Lab]1
Trojan-PWS.Magania.AHIW [PC Tools]1
VirTool:Win32/DelfInject.gen!L [Microsoft]1

Trojan.Win32.Crypt [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
United Kingdom4
China2
Russian Federation2
Italy1
Spain1

Trojan.Win32.Crypt [Ikarus] is known to be created as:
%ProgramFiles%\microsoft\microsoft.exe
%System%\awtss.dll
%System%\braviax.exe
%System%\coc.exe
%System%\cpl32ver.exe
%System%\ctfmon_jh.exe
%System%\ctfmon_lr.exe
%System%\ctfmon_no.exe
%System%\j3ewro.exe
%System%\rs32net.exe
%System%\saser.exe
%System%\taskmng.exe
%System%\vbnbs.exe
%Temp%\9.exe
%Temp%\sharki crypter\stub.exe
%Temp%\snebar.v3.exe
%Windir%\csrss.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.