Threat Search: 

ThreatExpert's Statistics for Trojan.Win32.NucScan [Ikarus]:

Trojan.Win32.NucScan [Ikarus] is also known as:
Threat AliasNumber of Incidents
Email-Worm.Win32.LunarStorm.f [Kaspersky Lab]4
Mal/Inet-Fam [Sophos]4
W32.Lunarstorm@mm [Symantec]4
W32/LunarStorm.gen [McAfee]4
Win32/LunarStorm.worm.39936 [AhnLab]4
Worm.LunarStorm.C [PC Tools]4
Backdoor.Graybird [Symantec]2
Backdoor.Win32.Delf.hzq [Kaspersky Lab]2
Backdoor:Win32/Poison.V [Microsoft]2
Generic BackDoor [McAfee]2
Mal/Behav-010 [Sophos]2
Downloader.gen.a [McAfee]1
Downloader.Trojan [Symantec]1
Mal/DelpDldr-C [Sophos]1
Mal/DelpDldr-F [Sophos]1
Mal_Fujak-1 [Trend Micro]1
Trojan.DL.Agent.APLJ [PC Tools]1
Trojan-Downloader.Win32.Small.cfu [Kaspersky Lab]1
W32.Fujacks.E [Symantec]1
W32/Fujacks [McAfee]1
Win32.HLLP.WHBoy.Gen [PC Tools]1
Worm.Win32.Fujack.k [Kaspersky Lab]1
Worm:Win32/Emerleox.gen!A [Microsoft]1

Trojan.Win32.NucScan [Ikarus] has the following possible country of origin:
OriginNumber of Incidents
China1

Trojan.Win32.NucScan [Ikarus] is known to be created as:
%System%\defrag.dll
%System%\drivers\spcolsv.exe
%Temp%\rage.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).