Threat Search: 

ThreatExpert's Statistics for Trojan:Win32/Tibs.HP [Microsoft]:

Trojan:Win32/Tibs.HP [Microsoft] is also known as:
Threat AliasNumber of Incidents
Downloader-ASH.gen.b [McAfee]245
Mal/HckPk-A [Sophos]219
Joke.Blusod [Symantec]196
Packed.Generic.186 [Symantec]69
Backdoor.Win32.Frauder.ba [Kaspersky Lab]42
Mal/EncPk-EU [Sophos]42
TROJ_FRAUDER.N [Trend Micro]36
Backdoor.Win32.Rukap.f [Ikarus]29
Application.BluSOD [PC Tools]21
Trojan-Downloader.Win32.FraudLoad.vbby [Kaspersky Lab]16
Backdoor.Win32.Frauder.dk [Kaspersky Lab]13
Generic BackDoor [McAfee]13
Generic.dx [McAfee]13
Mal/EncPk-EU, Mal/EncPk-EP [Sophos]13
Troj/DwnLdr-HGO [Sophos]13
Trojan.Blusod!sd6 [PC Tools]13
Trojan-Downloader.Win32.Small.aabv [Kaspersky Lab]13
Backdoor.Win32.Frauder.al [Kaspersky Lab]12
Generic Downloader.x [McAfee]12
Mal/EncPk-EU, Mal/Dorf-E [Sophos]12
Troj/FakeAle-GF [Sophos]12
TROJ_SMALL.JTN [Trend Micro]12
Trojan.Fakeavalert [Symantec]12
Trojan.Zlob [Symantec]12
Trojan-Downloader.Small!sd6 [PC Tools]12
Trojan.Blusod [Symantec]10
Backdoor.Win32.Frauder [Ikarus]9
Joke-Bluescreen.c [McAfee]9
Mal/Dorf-E [Sophos]9
Backdoor.Win32.Frauder.ca [Kaspersky Lab]6
New Malware.ag [McAfee]6
Backdoor.Win32.Frauder.dk [Ikarus]4
Troj/Agent-HNH [Sophos]4
TROJ_FAKEAV.KE [Trend Micro]4
Trojan.Win32.Multis.fs [Kaspersky Lab]4
Mal/Dorf-A [Sophos]3
Trojan Horse [Symantec]3
Backdoor.Win32.Frauder.ca [Ikarus]2
Backdoor.Win32.Frauder.ee [Kaspersky Lab]2
Backdoor.Win32.Frauder.gh [Kaspersky Lab]2
Trojan-Downloader.Win32.Small [Ikarus]2
Trojan-Downloader.Win32.Small.zxi [Kaspersky Lab]2
TrojanDownloader:Win32/Renos.AS [Microsoft]2
AntiVirus2008 [Symantec]1
AntiVirusXP2008 [Symantec]1
Backdoor.Win32.Agent.qby [Kaspersky Lab]1
Backdoor.Win32.Agent.qci [Kaspersky Lab]1
Backdoor.Win32.Frauder.af [Kaspersky Lab]1
Backdoor.Win32.Frauder.ds [Kaspersky Lab]1
Backdoor.Win32.Frauder.ee [Ikarus]1
BKDR_FRAUDER.AR [Trend Micro]1
BKDR_FRAUDER.Y [Trend Micro]1
Downloader.MisleadApp [Symantec]1
FakeAlert-AB [McAfee]1
FakeAlert-AG.gen [McAfee]1
FakeAlert-AG.gen.a [McAfee]1
Mal/EncPk-CZ [Sophos]1
Mal/EncPk-EP [Sophos]1
not-a-virus:FraudTool.Win32.XPAntivirus.lh [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntivirus.md [Kaspersky Lab]1
not-a-virus:FraudTool.Win32.XPAntivirus.nf [Kaspersky Lab]1
Troj/FakeAle-GD [Sophos]1
TROJ_FAKEAV.GL [Trend Micro]1
TROJ_RENOS.AFW [Trend Micro]1
Trojan.FakeAlert [PC Tools]1
Trojan-Downloader.Win32.Renos.AQ [Ikarus]1
Trojan-Downloader.Win32.Small.aabr [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.zun [Kaspersky Lab]1
Win-Trojan/Downloader.152576.J [AhnLab]1

Trojan:Win32/Tibs.HP [Microsoft] has the following possible country of origin:
OriginNumber of Incidents
Russian Federation21

Trojan:Win32/Tibs.HP [Microsoft] is known to be created as:
%ProgramFiles%\pchealthcenter\0.exe
%ProgramFiles%\richvideocodec\multiloader.dll
%System%\blphc35dj0erc1.scr
%System%\lphc35dj0erc1.exe
%System%\vie1.exe
%System%\vie10.exe
%System%\vie11.exe
%System%\vie12.exe
%System%\vie13.exe
%System%\vie14.exe
%System%\vie15.exe
%System%\vie16.exe
%System%\vie17.exe
%System%\vie18.exe
%System%\vie19.exe
%System%\vie1a.exe
%System%\vie1b.exe
%System%\vie1c.exe
%System%\vie1d.exe
%System%\vie1e.exe
%System%\vie1f.exe
%System%\vie2.exe
%System%\vie24.exe
%System%\vie3.exe
%System%\vie33.exe
%System%\vie4.exe
%System%\vie46.exe
%System%\vie5.exe
%System%\vie58.exe
%System%\vie6.exe
%System%\vie64.exe
%System%\vie65.exe
%System%\vie6b.exe
%System%\vie6c.exe
%System%\vie6d.exe
%System%\vie7.exe
%System%\vie70.exe
%System%\vie71.exe
%System%\vie72.exe
%System%\vie73.exe
%System%\vie74.exe
%System%\vie75.exe
%System%\vie8.exe
%System%\vie9.exe
%System%\viea.exe
%System%\vieb.exe
%System%\viec.exe
%System%\vied.exe
%System%\viee.exe
%System%\vief.exe
%System%\yur1.exe
%Temp%\0.exe
%Windir%\sys1.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.