Threat Search: 

ThreatExpert's Statistics for VirTool:Win32/Injector.gen!AG [Microsoft]:

VirTool:Win32/Injector.gen!AG [Microsoft] is also known as:
Threat AliasNumber of Incidents
Backdoor.Trojan [Symantec]279
Backdoor.Trojan [PC Tools]163
BackDoor-CEP.gen.am [McAfee]158
BackDoor-EEF [McAfee]146
BackDoor-EGO [McAfee]120
Backdoor.Bifrose [Symantec]119
Mal/Generic-A [Sophos]113
VirTool.Win32.Injector [Ikarus]98
Trojan.Midgare [Ikarus]93
Trojan.Win32.Midgare [Ikarus]90
Trojan Horse [Symantec]89
Mal/EncPk-JU [Sophos]88
Trojan.Win32.Refroso [Ikarus]86
Troj/Inject-JV [Sophos]72
Backdoor.Win32.Bifrose.fpb [Kaspersky Lab]69
Mal/EncPk-LR, Mal/KeInject-A [Sophos]64
BackDoor-EHE [McAfee]62
Win-Trojan/Midgare.30590 [AhnLab]54
Trojan-Downloader.Win32.Pher.xx [Kaspersky Lab]53
BackDoor-CEP.gen.g [McAfee]50
Mal/KeInject-A, Mal/EncPk-LR [Sophos]49
Trojan.Win32.Midgare.adjf [Kaspersky Lab]47
Downloader [Symantec]46
Mudgare.a [McAfee]45
Trojan.Midgare.hhn [PC Tools]45
Trojan.Win32.Refroso.ktw [Kaspersky Lab]41
Trojan.Generic [PC Tools]40
BKDR_AHZE.SMM [Trend Micro]39
Mal/EncPk-FH [Sophos]35
Trojan-Dropper.Win32.Stabs.elu [Kaspersky Lab]35
BackDoor-EEC [McAfee]29
Troj/Bifrose-ZC [Sophos]27
Downloader-BYK [McAfee]26
Dropper/Stabs.65949 [AhnLab]26
Trojan.Win32.Refroso.ztk [Kaspersky Lab]25
Backdoor.Win32.Donbot.b [Kaspersky Lab]24
BackDoor-EHF [McAfee]24
TROJ_REFROSO.SME [Trend Micro]23
Win-Trojan/Midgare.30208 [AhnLab]21
Mal/Behav-103, Mal/Behav-043 [Sophos]20
Mal/Bifrose-X, Mal/EncPk-FH [Sophos]19
Mal/EncPk-KZ, Mal/EncPk-FH [Sophos]19
Trojan.Win32.DelfInject.b [Kaspersky Lab]19
Downloader.Generic [PC Tools]18
Troj/Inject-JA [Sophos]18
Troj/Inject-JC [Sophos]18
Mal/EncPk-JU, Mal/Behav-103, Mal/Behav-043 [Sophos]17
Trojan.Dropper [Symantec]17
W32.Spybot.Worm [Symantec]17
Virus.Win32.Bifrose [Ikarus]16
Adware.Lop [Symantec]15
Backdoor.Bifrose [PC Tools]15
BKDR_AHZE.NY [Trend Micro]15
Trojan.Refroso [Ikarus]14
Trojan.Win32.Monder.ybg [Kaspersky Lab]14
Win-Trojan/Midgare.39325 [AhnLab]14
Backdoor.Win32.Agent.amrc [Kaspersky Lab]13
BackDoor-EBI.gen [McAfee]13
Mal/EncPk-KZ [Sophos]13
Troj/Bifrose-YH [Sophos]13
Troj/Inject-KI [Sophos]13
BackDoor-EEH [McAfee]12
Trojan.Dropper [PC Tools]12
Trojan-PWS.Win32.Dybalom [Ikarus]12
Trojan-Downloader.Win32.Pher [Ikarus]11
BKDR_BIFROSE.SMI [Trend Micro]10
Trojan-Dropper.Win32.Hupigon [Ikarus]10
Win-Trojan/Midgare.39706 [AhnLab]10
Backdoor.Win32.Bifrose.fqv [Kaspersky Lab]9
Mudgare.gen.b [McAfee]9
Troj/Inject-JU [Sophos]9
Virus.Win32.CeeInject [Ikarus]8
BackDoor-EFK [McAfee]7
Mudgare [McAfee]7
Troj/Bifrose-YB [Sophos]7
Win-Trojan/Agent.26624.JX [AhnLab]7
Win-Trojan/Agent.32637.E [AhnLab]7
Mal/Behav-352, Mal/Midgar-A, Mal/EncPk-FH [Sophos]6
Troj/Bifrose-XV [Sophos]6
Troj/Inject-KL [Sophos]6
TROJ_INJECT.SMOJ [Trend Micro]6
Trojan.Win32.Refroso.sba [Kaspersky Lab]6
Win-Trojan/Midgare.32256 [AhnLab]6
Win-Trojan/Refroso.87933 [AhnLab]6
Backdoor.Win32.Bifrose.frf [Kaspersky Lab]5
BackDoor-CEP!hv.a [McAfee]5
BKDR_BIFROSE.SMO [Trend Micro]5
Mal/Generic-E [Sophos]5
Trojan-Downloader.Win32.Agent.ckpq [Kaspersky Lab]5
Virus.Trojan.Win32.Midgare [Ikarus]5
Win-Trojan/Refroso.62877 [AhnLab]5
Adware.Lop [PC Tools]4
Backdoor.Win32.Bifrose.avja [Kaspersky Lab]4
Backdoor.Win32.Bifrose.fqs [Kaspersky Lab]4
Backdoor-CEP.gen.r [McAfee]4
BackDoor-EED [McAfee]4
BKDR_BIFROSE.DZZ [Trend Micro]4
Mal/Behav-043 [Sophos]4
Mal/Generic-A, Mal/Behav-346 [Sophos]4
Net-Worm.Spybot [PC Tools]4

VirTool:Win32/Injector.gen!AG [Microsoft] has the following possible countries of origin:
OriginNumber of Incidents
United Kingdom3
Australia2
Sweden2
Germany1
Russian Federation1
South Africa1
Spain1

VirTool:Win32/Injector.gen!AG [Microsoft] is known to be created as:
%AppData%\bi\a.exe
%AppData%\bifrost\server.exe
%AppData%\messenger\msmsgs.exe
%AppData%\microsoft\svchost.exe
%AppData%\microsofty\upydate.exe
%AppData%\msn\msnmsgr.exe
%AppData%\qq\a.exe
%AppData%\softmsn\msnm.exe
%AppData%\system\taskmgr.exe
%AppData%\system32\system32.exe
%LocalSettings%\temprr.exe
%LocalSettings%\temps.scr
%LocalSettings%\tempserver.exe
%ProgramFiles%\bifrost\dll.exe
%ProgramFiles%\bifrost\explore.exe
%ProgramFiles%\bifrost\mesia.exe
%ProgramFiles%\bifrost\migamix.exe
%ProgramFiles%\bifrost\mmm.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\bifrost\zah.exe
%ProgramFiles%\bifrost\zx.exe
%ProgramFiles%\cccc.exe
%ProgramFiles%\crypter\crypter.exe
%ProgramFiles%\flash\server.exe
%ProgramFiles%\google\google.exe
%ProgramFiles%\google\server.exe
%ProgramFiles%\hetlr.exe
%ProgramFiles%\m.updat\updat.exe
%ProgramFiles%\messenger\msnm.exe
%ProgramFiles%\microsoft\svchost.exe
%ProgramFiles%\microsofty\upydate.exe
%ProgramFiles%\movie maker\moviemk.exe
%ProgramFiles%\mrd\server.exe
%ProgramFiles%\msn\msn.exe
%ProgramFiles%\msn\msnmgsr.exe
%ProgramFiles%\msn\msnmsgr.exe
%ProgramFiles%\msn\server.exe
%ProgramFiles%\msnmsgr\msnmsgr.exe
%ProgramFiles%\server.exe
%ProgramFiles%\server\server.exe
%ProgramFiles%\sisisi.exe
%ProgramFiles%\skooo\skoo.exe
%ProgramFiles%\softmsn\msnm.exe
%ProgramFiles%\sxcd\server.exe
%ProgramFiles%\system of down\system.exe
%ProgramFiles%\system\server.scr
%ProgramFiles%\system32\dll.exe
%ProgramFiles%\tonec inc\internet download manager\idmgrhlp.exe
%ProgramFiles%\win32a\win32a.exe
%ProgramFiles%\windows dri\windows.exe
%ProgramFiles%\windows driv\windows.exe
%ProgramFiles%\windows update\temp.exe
%ProgramFiles%\windows updates\winupdate.exe
%ProgramFiles%\winrar\unistall.exe
%ProgramFiles%\wsx\k.exe
%Programs%\startup\server.exe
%System%\1.exe
%System%\2195\lass.exe
%System%\4578\exploir.exe
%System%\asd\14.exe
%System%\avraiscanne\avirascann.exe
%System%\bi\a.exe
%System%\bif\a.exe
%System%\bifrost\asll.exe
%System%\bifrost\d72srv.exe
%System%\bifrost\lol.exe
%System%\bifrost\msngr.exe
%System%\bifrost\r.exe
%System%\bifrost\sa7rmooot.exe
%System%\bifrost\server.exe
%System%\bot\svchost.exe
%System%\clen.exe
%System%\cmd32.exe
%System%\coction\boote.exe
%System%\dd\gg.exe
%System%\dll\dll.exe
%System%\dr.cryp\explorer.exe
%System%\dxdiage.exe
%System%\explorer\explorer.exe
%System%\info.dll
%System%\internet\internet.exe
%System%\m. updat\updat.exe
%System%\masnger\masnger.exe
%System%\massenger live\server.exe
%System%\microstoft\microstoft.exe
%System%\msn\crack.exe
%System%\mstwain32\msn.exe
%System%\my computer0\server.exe
%System%\net\net.exe
%System%\program file\svhost.exe
%System%\qq\a.exe
%System%\server.exe
%System%\serveur.exe
%System%\sjeq\syqsjje.exe
%System%\spool\spool1.exe
%System%\susstem\iexplor.exe
%System%\sym\sr.exe
%System%\sys\boot.exe
%System%\sys\serv.exe
%System%\sys\system32.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).