Threat Search: 

ThreatExpert's Statistics for Trojan.Win32.StartPage [Ikarus]:

Trojan.Win32.StartPage [Ikarus] is also known as:
Threat AliasNumber of Incidents
Mal/Behav-009 [Sophos]374
Trojan Horse [Symantec]214
Trojan.Startpage [Symantec]69
Mal/Behav-236, Mal/Behav-009 [Sophos]49
Generic StartPage [McAfee]47
W32.SillyFDC [Symantec]45
Mal/Generic-A [Sophos]42
TROJ_AGENT.APDC [Trend Micro]29
Trojan.Win32.StartPage.dcr [Kaspersky Lab]25
Downloader [Symantec]20
Trojan.Startpage!sd6 [PC Tools]20
Generic.dx [McAfee]19
Win-Trojan/Xema.variant [AhnLab]18
Mal/Behav-204 [Sophos]17
Worm:Win32/Delf.BD [Microsoft]17
Backdoor.Win32.Wuca.cw [Kaspersky Lab]16
Trojan:Win32/Dreammon.C [Microsoft]14
Worm.Win32.Delf.dw [Kaspersky Lab]14
Generic.dx!wa [McAfee]12
W32/Kukoo-D [Sophos]12
WORM_DELF.AG [Trend Micro]12
W32.Chiko [Symantec]11
Suspicious.MH690 [Symantec]10
Trojan.Win32.StartPage.apb [Kaspersky Lab]10
W32/Generic.worm.ac [McAfee]10
Adware.SuperUtilBar [PC Tools]9
StartPage-DU.dll [McAfee]9
Trojan.Win32.StartPage.cyi [Kaspersky Lab]9
W32/Chike [McAfee]9
Win-Trojan/Xema.377344 [AhnLab]9
Trojan.Win32.StartPage.ajh [Kaspersky Lab]8
Trojan:Win32/Chepdu.A [Microsoft]8
Adware-BHO.gen.b [McAfee]7
Generic Downloader.x [McAfee]7
Trojan.Win32.StartPage.bdv [Kaspersky Lab]7
Backdoor.Trojan [Symantec]6
Trojan:Win32/Startpage [Microsoft]6
Win-Trojan/Wuca.33480.B [AhnLab]6
Worm.Win32.AutoRun.cis [Kaspersky Lab]6
Downloader.Trojan [Symantec]5
Generic Rootkit.d [McAfee]5
Generic StartPage.w [McAfee]5
Troj/BHO-HR [Sophos]5
Trojan.Startpage [PC Tools]5
Trojan.Win32.StartPage.dlw [Kaspersky Lab]5
Trojan.Win32.StartPage.po [Kaspersky Lab]5
W32.SillyDC [Symantec]5
Worm.Delf.ALXS [PC Tools]5
Adware.CoolWebSearch [Symantec]4
Backdoor.Graybird.GEN [PC Tools]4
Backdoor.Win32.Wuca.am [Kaspersky Lab]4
Backdoor.Win32.Wuca.an [Kaspersky Lab]4
Exploit.IMG-WMF [PC Tools]4
Generic StartPage!l [McAfee]4
Mal/Behav-112 [Sophos]4
New Malware.aj [McAfee]4
not-a-virus:AdWare.Win32.SearchPage [Kaspersky Lab]4
Packed/Upack [AhnLab]4
Troj/StartP-BC [Sophos]4
TROJ_SEARCHPAG.A [Trend Micro]4
TROJ_STARTPA.APB [Trend Micro]4
TROJ_STARTPA.EGH [Trend Micro]4
Trojan.StartPage.ANB [PC Tools]4
Trojan.Startpage.M [Symantec]4
Trojan.Win32.BHO.flv [Kaspersky Lab]4
Trojan.Win32.StartPage.cyk [Kaspersky Lab]4
Trojan.Win32.StartPage.ix [Kaspersky Lab]4
Trojan:Win32/Startpage.YI [Microsoft]4
W32/Autorun.worm.n [McAfee]4
W32/Autorun-LS [Sophos]4
W32/Ickie-A [Sophos]4
W32/Sdbot-DKG [Sophos]4
Win-Trojan/StartPage.21192 [AhnLab]4
Win-Trojan/StartPage.378880 [AhnLab]4
Win-Trojan/StartPage.454656 [AhnLab]4
Worm:Win32/Autorun.EE [Microsoft]4
Worm:Win32/Autorun.PP [Microsoft]4
Adware-CWS [McAfee]3
Backdoor.Graybird [Symantec]3
Backdoor.Graybird!Gen [Symantec]3
Backdoor.Win32.Wuca.al [Kaspersky Lab]3
Backdoor.Win32.Wuca.bq [Kaspersky Lab]3
Downloader-BLE!a [McAfee]3
Generic BackDoor [McAfee]3
Generic Dropper.ex [McAfee]3
Generic StartPage!ct [McAfee]3
Generic StartPage!da [McAfee]3
Troj/Ablank-Gen [Sophos]3
TROJ_STARTPG.C [Trend Micro]3
Trojan.Generic [PC Tools]3
Trojan.Win32.BHO.eek [Kaspersky Lab]3
Trojan.Win32.StartPage.ewy [Kaspersky Lab]3
Trojan.Win32.StartPage.frc [Kaspersky Lab]3
Trojan-Downloader.Win32.Agent.jz [Kaspersky Lab]3
VirTool:Win32/DelfInject.gen!L [Microsoft]3
Win-Trojan/StartPage.377856 [AhnLab]3
Win-Trojan/StartPage.88576.D [AhnLab]3
Win-Trojan/Wuca.33480.E [AhnLab]3
Worm.AutoRun.AHJ [PC Tools]3
Backdoor.Delf!sd5 [PC Tools]2

Trojan.Win32.StartPage [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China351
United Kingdom52
Belgium32
Brazil10
France7
Spain7
Russian Federation5
Finland3
Germany3
Egypt1
Japan1
Saudi Arabia1
Switzerland1
Turkey1

Trojan.Win32.StartPage [Ikarus] is known to be created as:
%AppData%\cebscript92\dlls\winrgn.dll
%AppData%\googlems.dll
%AppData%\lsass.exe
%AppData%\smss.exe
%AppData%\svchost.exe
%FontsDir%\alg.exe
%FontsDir%\userinit.exe
%FontsDir%\wlcom.exe
%FontsDir%\wlom.exe
%FontsDir%\wuauclt.exe
%ProgramFiles%\_wmplayer.exe
%ProgramFiles%\advstrs\mactool.exe
%ProgramFiles%\antiengel\antiengel.exe
%ProgramFiles%\common files\taskmmgr.exe
%ProgramFiles%\internet explorer\ieupcheck.exe
%ProgramFiles%\internet explorer\iexpl0re.exe
%ProgramFiles%\internet explorer\iexploreplus.exe
%ProgramFiles%\josearch\josearch.dll
%ProgramFiles%\kookootv\kookootv.exe
%ProgramFiles%\winks instalador\msngserv.exe
%Programs%\startup\realshed.exe
%System%\_drivers.exe
%System%\_explorers.exe
%System%\090520-7-8.exe
%System%\090520-7-9.exe
%System%\1025\1025.exe
%System%\1028\1028.exe
%System%\1031\1031.exe
%System%\1033\1033.exe
%System%\1037\1037.exe
%System%\1041\1041.exe
%System%\1042\1042.exe
%System%\1054\1054.exe
%System%\2052\2052.exe
%System%\3076\3076.exe
%System%\3com_dmi\3com_dmi.exe
%System%\catroot\catroot.exe
%System%\catroot2\catroot2.exe
%System%\com\com.exe
%System%\custie32.dll
%System%\customie.dll
%System%\dhcp\dhcp.exe
%System%\directx\directx.exe
%System%\dllcache\dllcache.exe
%System%\doopda.dll
%System%\drivers.exe
%System%\drivers\drivers.exe
%System%\drivers\msqmx.sys
%System%\drivers\yenapq15.sys
%System%\elitemar32.exe
%System%\enlcd.dll
%System%\expl0re.exe
%System%\export\export.exe
%System%\fhdkda.dll
%System%\gedkda.dll
%System%\grouppolicy\grouppolicy.exe
%System%\ias\ias.exe
%System%\icsxml\icsxml.exe
%System%\ime\ime.exe
%System%\inetsrv\inetsrv.exe
%System%\kookootv.exe
%System%\macromed\macromed.exe
%System%\microsoft\microsoft.exe
%System%\msconfig.exe
%System%\msdtc\msdtc.exe
%System%\mtwirl.dll
%System%\mui\mui.exe
%System%\npp\npp.exe
%System%\oikp.dll
%System%\oobe\oobe.exe
%System%\pmbk.dll
%System%\q8x7n74klat.exe
%System%\ras\ras.exe
%System%\reinstallbackups\reinstallbackups.exe
%System%\rejoice49.exe
%System%\restore\restore.exe
%System%\rightmain.dll
%System%\scrnsa.exe
%System%\servicx.exe
%System%\setup\setup.exe
%System%\shellext\shellext.exe
%System%\sourcewin.exe
%System%\spool\spool.exe
%System%\svchosl.exe
%System%\talk47n7x8q.exe
%System%\taskmagr.exe
%System%\usmt\usmt.exe
%System%\wbem\wbem.exe
%System%\wins\wins.exe
%System%\wintemp.exe
%System%\wupnmg.exe
%System%\xircom\xircom.exe
%Temp%\090412-0-2.exe
%Temp%\090412-0-5.exe
%Temp%\090523-3-2.exe
%Temp%\2008_misswe.exe
%Temp%\e_4\powerdll.dll
%Temp%\juegos.exe
%Temp%\kafan virlist 2009.03.07\090307-1-6.exe
%Temp%\opera_keygen.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).