Threat Search: 

ThreatExpert's Statistics for VirTool.Win32.CeeInject [Ikarus]:

VirTool.Win32.CeeInject [Ikarus] is also known as:
Threat AliasNumber of Incidents
VirTool:Win32/CeeInject.gen!J [Microsoft]397
Trojan Horse [Symantec]97
VirTool:Win32/CeeInject.gen!A [Microsoft]59
Generic.dx [McAfee]56
Backdoor.Trojan [Symantec]47
Trojan:Win32/Midgare.A [Microsoft]44
W32.Spybot.Worm [Symantec]42
W32/Inject-DE [Sophos]40
Backdoor.IRCBot!sd6 [PC Tools]35
Backdoor:Win32/Bifrose.EY [Microsoft]34
W32.IRCBot [Symantec]34
W32/Spybot.worm.gen [McAfee]34
Mal/Behav-243 [Sophos]32
Downloader [Symantec]31
Backdoor.Bifrose [Symantec]27
Backdoor.Win32.Bifrose.afqy [Kaspersky Lab]23
Troj/Mdrop-BZI [Sophos]22
W32/Koobface.worm.gen [McAfee]21
Win-Trojan/Xema.variant [AhnLab]21
Worm.Win32.AutoRun.rkz [Kaspersky Lab]20
Backdoor.Win32.IRCBot.grs [Kaspersky Lab]18
Generic BackDoor [McAfee]18
Generic PUP.x [McAfee]18
Backdoor.IRC.Bot [Symantec]17
W32/Sdbot.worm [McAfee]15
Mal/EncPk-FL [Sophos]14
VirTool:Win32/Injector.gen!B [Microsoft]14
BackDoor-DVT [McAfee]13
Troj/DwnLdr-HLF [Sophos]13
Backdoor.Win32.IRCBot.hlq [Kaspersky Lab]11
Backdoor.Win32.SdBot.kiy [Kaspersky Lab]11
Mal/Behav-043 [Sophos]11
Packed.Win32.Tdss.c [Kaspersky Lab]11
Trojan.Win32.AntiAV.tz [Kaspersky Lab]11
Win-Trojan/Fraudpack.37245 [AhnLab]11
Worm:Win32/Hamweq.A [Microsoft]11
Backdoor.Bifrose!sd6 [PC Tools]10
Backdoor.Win32.IRCBot.hsy [Kaspersky Lab]10
Mal/Generic-A [Sophos]10
Trojan.Win32.Agent.aodx [Kaspersky Lab]10
Troj/Agent-IXM [Sophos]9
Mal/Bifrose-O [Sophos]8
Troj/Agent-GZP [Sophos]8
Win-Trojan/Bifrose.72655 [AhnLab]8
Backdoor.Win32.IRCBot.gmv [Kaspersky Lab]7
Backdoor.Win32.IRCBot.hrx [Kaspersky Lab]7
Mudgare [McAfee]7
Trojan.Dropper [Symantec]7
Backdoor.IRCBot.gix [PC Tools]6
Backdoor.Win32.Bifrose.ains [Kaspersky Lab]6
Backdoor.Win32.Poison.rbr [Kaspersky Lab]6
Backdoor.Win32.SdBot.jqy [Kaspersky Lab]6
BackDoor-CEP.gen.y [McAfee]6
IRC-Ibot [McAfee]6
Troj/CeeInj-Fam, Troj/Inject-DF [Sophos]6
Trojan.Buzus!sd6 [PC Tools]6
Trojan.Win32.Buzus.amfz [Kaspersky Lab]6
VirTool:Win32/Injector.gen!R [Microsoft]6
Win32/IRCBot.worm.variant [AhnLab]6
Win-Trojan/Bifrose.48559 [AhnLab]6
Worm:Win32/Pushbot.JD [Microsoft]6
Backdoor.Win32.IRCBot.glv [Kaspersky Lab]5
Backdoor.Win32.IRCBot.gnc [Kaspersky Lab]5
Backdoor.Win32.IRCBot.gnv [Kaspersky Lab]5
Backdoor.Win32.IRCBot.hzd [Kaspersky Lab]5
Backdoor.Win32.IRCBot.ibd [Kaspersky Lab]5
Backdoor-CEP [McAfee]5
Generic Downloader.x [McAfee]5
Mal/Generic-E, Mal/Behav-043 [Sophos]5
Troj/IRCBot-ADQ [Sophos]5
Trojan.AntiAV!sd6 [PC Tools]5
Trojan.Win32.Buzus.akyt [Kaspersky Lab]5
Trojan.Win32.Buzus.aqvr [Kaspersky Lab]5
Trojan.Win32.Small.btw [Kaspersky Lab]5
Trojan-Spy.BZub.fhp [PC Tools]5
Trojan-Spy.Win32.Zbot.hgr [Kaspersky Lab]5
Win-Trojan/Agent.8192.ST [AhnLab]5
Worm:Win32/Pushbot.LE [Microsoft]5
Backdoor.Win32.Agent.aelr [Kaspersky Lab]4
Backdoor.Win32.Poison.nea [Kaspersky Lab]4
Mal/Inject-K, Mal/EncPk-FL [Sophos]4
Mal/Packer [Sophos]4
Troj/IRCBot-ADC [Sophos]4
Troj/IRCBot-ADL [Sophos]4
Trojan.Win32.Agent.asrq [Kaspersky Lab]4
Trojan-Downloader.Win32.Small.jbc [Kaspersky Lab]4
W32.SillyIM [Symantec]4
W32/Xirtem@MM [McAfee]4
Win-Trojan/Agent.48690.G [AhnLab]4
Worm:Win32/Pushbot.IL [Microsoft]4
Worm:Win32/Pushbot.JA [Microsoft]4
WORM_SDBOT.ARI [Trend Micro]4
Backdoor.Win32.IRCBot.gou [Kaspersky Lab]3
Backdoor.Win32.IRCBot.gsf [Kaspersky Lab]3
Backdoor.Win32.IRCBot.hku [Kaspersky Lab]3
Backdoor.Win32.Poison.num [Kaspersky Lab]3
Infostealer.Banker.C [Symantec]3
Infostealer.Gampass [Symantec]3
Mal/Inject-K [Sophos]3
Mal/SpyAgent-B [Sophos]3

VirTool.Win32.CeeInject [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Israel160
Portugal31
Sweden10
China7
Russian Federation6
Saudi Arabia6
Netherlands4
France2
Germany2
Belgium1
Egypt1
Spain1

VirTool.Win32.CeeInject [Ikarus] is known to be created as:
%AppData%\cgi-bin.exe
%CommonAppData%\win-fixed.exe
%ProgramFiles%\bifeg\dg.exe
%ProgramFiles%\bifrost\missingfile.exe
%ProgramFiles%\bifrost\rundll32.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\client.exe
%ProgramFiles%\coffin\coffin.exe
%ProgramFiles%\common files\system\ragebot.exe
%ProgramFiles%\company\master of the voice\server.exe
%ProgramFiles%\install shild\install.exe
%ProgramFiles%\java\msn.exe
%ProgramFiles%\loz\regedit.exe
%ProgramFiles%\massenger live\server.exe
%ProgramFiles%\mes\hr.exe
%ProgramFiles%\mesengeer\www.exe
%ProgramFiles%\msn\server.exe
%ProgramFiles%\reai piayer\reai.exe
%ProgramFiles%\server.exe
%ProgramFiles%\travian\travian.exe
%ProgramFiles%\updat\linge.exe
%ProgramFiles%\updat\updat.exe
%ProgramFiles%\windows\windowsdll.exe
%ProgramFiles%\windwosdll\windwosdll.exe
%System%\1038\explorer.exe
%System%\adobe\adobefg.exe
%System%\afp.exe
%System%\autofmtd.exe
%System%\avs.exe
%System%\b\ser.exe
%System%\bifrost\server.exe
%System%\bifrost\taoufik00.exe
%System%\birosf\seeerver.exe
%System%\blka.exe
%System%\ciscv.exe
%System%\cmd32.exe
%System%\csrs.exe
%System%\daemon.exe
%System%\ddd.exe
%System%\explorer.exe
%System%\explorer\explorer.exe
%System%\firewall.exe
%System%\fx3.exe
%System%\iexplore.exe
%System%\inf\xccefb090131.scr
%System%\inf\xccefb090305.scr
%System%\javarun.exe
%System%\juschd.exe
%System%\lcsass.exe
%System%\messanger\msn.exe
%System%\mf.exe
%System%\mgt.exe
%System%\mldmm.exe
%System%\msn\system.exe
%System%\msupdt32b.exe
%System%\ntos.exe
%System%\pex.exe
%System%\programs\server.exe
%System%\progrmas\server.exe
%System%\rafik\server.exe
%System%\rbjeivpetkbayv.exe
%System%\rundll85.exe
%System%\sa\ses.exe
%System%\scuccccmunafgb.exe
%System%\service.exe
%System%\setpoints.exe
%System%\setupdir\winlogon.exe
%System%\sssvcs.exe
%System%\svscs.exe
%System%\svshot\svshot.exe
%System%\svssccs.exe
%System%\system\win32.exe
%System%\system\windows.exe
%System%\system32\install.exe
%System%\system33.exe
%System%\systpc.exe
%System%\twext.exe
%System%\update.exe
%System%\vmn.exe
%System%\wf.exe
%System%\win.exe
%System%\win32\win32.exe
%System%\winamp.exe
%System%\windaemon.exe
%System%\windows.exe
%System%\winrar.exe
%System%\xxx\server.exe
%System%\zlh.exe
%Temp%\0001030_1.exe
%Temp%\dbucbeur.exe
%Temp%\file1.exe
%Temp%\ixp000.tmp\8.exe
%Temp%\ixp000.tmp\aa.exe
%Temp%\ixp000.tmp\act.exe
%Temp%\ixp000.tmp\bb.exe
%Temp%\ixp000.tmp\bbpic.exe
%Temp%\ixp000.tmp\blabla.exe
%Temp%\ixp000.tmp\bur.exe
%Temp%\ixp000.tmp\burimi.exe
%Temp%\ixp000.tmp\burimiii.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).