Threat Search: 

ThreatExpert's Statistics for VirTool:Win32/Injector.gen!Y [Microsoft]:

VirTool:Win32/Injector.gen!Y [Microsoft] is also known as:
Threat AliasNumber of Incidents
BKDR_BIFROSE.DZZ [Trend Micro]37
Backdoor-CEP.gen.q [McAfee]31
Trojan.Dropper [Symantec]31
VirTool.Win32.Injector [Ikarus]23
Win-Trojan/Agent.11776.KS [AhnLab]22
Troj/Bifrose-XE [Sophos]18
Trojan Horse [Symantec]17
Trojan-Dropper.Win32.Stabs.aao [Kaspersky Lab]16
Generic Dropper.gz [McAfee]14
Trojan.Dropper [PC Tools]14
Mal/Generic-A [Sophos]8
Troj/Agent-JRN [Sophos]8
Trojan.Generic [PC Tools]7
Mal/Behav-346, Mal/Inject-P [Sophos]6
Trojan-Dropper.Win32.Stabs [Ikarus]6
Backdoor.Win32.Bifrose.for [Kaspersky Lab]5
BackDoor-CEP.gen.n [McAfee]5
Backdoor-CEP.gen.r [McAfee]5
Trojan.Win32.Agent.ckeq [Kaspersky Lab]5
Win-Trojan/Agent.44925.B [AhnLab]5
Generic Dropper.fh [McAfee]4
Trojan.Win32.Agent.bwnu [Kaspersky Lab]4
Virus.Win32.Inject [Ikarus]4
Backdoor.Trojan [PC Tools]3
Backdoor.Trojan [Symantec]3
Backdoor-CEP.gen.m [McAfee]3
BackDoor-EEF [McAfee]3
Dropper/Stabs.45314 [AhnLab]3
Dropper/Stabs.48541 [AhnLab]3
Mal/EncPk-JU [Sophos]3
Mal/Inject-R [Sophos]3
Troj/Buzus-AU [Sophos]3
Trojan.Win32.Agent.buag [Kaspersky Lab]3
Trojan-Spy.Win32.Agent.azbj [Kaspersky Lab]3
VirTool:Win32/Injector.gen!W [Microsoft]3
Win-Trojan/Agent.10731 [AhnLab]3
Win-Trojan/Agent.44957 [AhnLab]3
Win-Trojan/Bluescreen.9216 [AhnLab]3
Backdoor.Bifrose [Symantec]2
Backdoor.SdBot [Ikarus]2
Backdoor-DZM [McAfee]2
Infostealer.Gampass [Symantec]2
Mal/Behav-346, Mal/Inject-P, Mal/Bifrose-W [Sophos]2
Mal/Bifrose-W, Mal/Behav-346, Mal/Inject-P [Sophos]2
Mal/Generic-A, Mal/EncPk-JU [Sophos]2
Mal/Inject-P [Sophos]2
Packed.Win32.CPEX-based.gc [Kaspersky Lab]2
Trojan.Pandex [Symantec]2
Trojan.Win32.Agent2.kjd [Kaspersky Lab]2
Win32/Mytob.worm.22016.B [AhnLab]2
Backdoor.Bifrose.FV [PC Tools]1
Backdoor.Win32.Bifrose.baxe [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bftq [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bjub [Kaspersky Lab]1
BackDoor-CEP!s [McAfee]1
Generic MSVC.h [McAfee]1
Generic PWS.y!sj [McAfee]1
Mal/Behav-103, Mal/Behav-043 [Sophos]1
Mal/Behav-346 [Sophos]1
Mal/Bifrose-W, Mal/Behav-346 [Sophos]1
Troj/Agent-KXS [Sophos]1
Troj/BDoor-AWV [Sophos]1
Trojan.Loader [Ikarus]1
Trojan.Win32.Agent.cbbh [Kaspersky Lab]1
Trojan.Win32.Agent.cjgr [Kaspersky Lab]1
Trojan.Win32.Buzus.bmak [Kaspersky Lab]1
Trojan.Win32.Buzus.bmbq [Kaspersky Lab]1
Trojan.Win32.Buzus.brya [Kaspersky Lab]1
Trojan.Win32.Midgare.vmg [Kaspersky Lab]1
Trojan.Win32.Refroso.lza [Kaspersky Lab]1
Trojan.Win32.Refroso.up [Kaspersky Lab]1
Trojan-Dropper.Win32.Agent.atxv [Kaspersky Lab]1
Trojan-Dropper.Win32.Stabs.abt [Kaspersky Lab]1
Trojan-Dropper.Win32.Stabs.dhb [Kaspersky Lab]1
Trojan-Dropper.Win32.Stabs.dtm [Kaspersky Lab]1
Trojan-Dropper.Win32.Stabs.ek [Kaspersky Lab]1
Trojan-PSW.Gampass [PC Tools]1
Trojan-Ransom [Ikarus]1
W32.IRCBot [Symantec]1
Win-Trojan/Agent.253440.S [AhnLab]1
Win-Trojan/Agent.42365 [AhnLab]1
Win-Trojan/Agent.66092 [AhnLab]1
Win-Trojan/Agent.66429 [AhnLab]1
Win-Trojan/Agent2.20992.HT [AhnLab]1
Win-Trojan/Agent2.25088.D [AhnLab]1
Win-Trojan/Agent2.27022.H [AhnLab]1
Win-Trojan/Bifrose.67691 [AhnLab]1
Win-Trojan/Buzus.611328.C [AhnLab]1
Win-Trojan/Xema.variant [AhnLab]1

VirTool:Win32/Injector.gen!Y [Microsoft] has the following possible country of origin:
OriginNumber of Incidents
Denmark1

VirTool:Win32/Injector.gen!Y [Microsoft] is known to be created as:
%ProgramFiles%\anti-virus\server.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\bifrost\win.exe
%ProgramFiles%\jnooony\coffin.exe
%ProgramFiles%\spy-net\server.exe
%ProgramFiles%\systen\win32.exe
%ProgramFiles%\wincrak\payload.exe
%System%\bifrost\saret.exe
%System%\dllwt\dlldh.exe
%System%\dwm32.exe
%System%\info\sys6.exe
%System%\messenger\msnmsg.exe
%System%\skype\skype.exe
%System%\sysdll\runsys.exe
%System%\update.exe
%System%\win\windows.exe
%Temp%\ixp000.tmp\obadah.exe
%Temp%\ixp000.tmp\reptile1.exe
%Temp%\ixp000.tmp\rt.exe
%Temp%\ixp000.tmp\s.exe
%Temp%\output.exe
%Temp%\scvhost.exe
%Temp%\scvhostss.exe
%Temp%\server.exe
%Temp%\servic.exe
%Temp%\spynet-server.exe
%Temp%\xfile.exe
%Temp%\xx.exe
%Windir%\1.exe
%Windir%\11\ad.exe
%Windir%\bifrost\server.exe
%Windir%\internet explor\internet.exe
%Windir%\madbbcre.exe
%Windir%\sys\12.exe
%Windir%\sys\21.exe
%Windir%\sys\9.exe
c:\extracted\dll.exe.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.