Threat Search: 

ThreatExpert's Statistics for VirTool.Win32.Injector [Ikarus]:

VirTool.Win32.Injector [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan.Dropper [Symantec]256
VirTool:Win32/Injector.gen!R [Microsoft]194
BackDoor-CEP [McAfee]104
Mal/Generic-A [Sophos]98
VirTool:Win32/Injector.gen!AG [Microsoft]98
VirTool:Win32/Injector.gen!AD [Microsoft]61
VirTool:Win32/Injector.gen!W [Microsoft]58
Trojan Horse [Symantec]57
Backdoor-CEP.gen.q [McAfee]54
Win-Trojan/Injector.40829 [AhnLab]46
Backdoor.Trojan [Symantec]45
Win-Trojan/Agent.11776.KS [AhnLab]40
Trojan-Dropper.Win32.Stabs.aao [Kaspersky Lab]39
Trojan.Win32.Buzus.bzes [Kaspersky Lab]38
Generic Spy.e [McAfee]36
Win-Trojan/Agent.87552.DW [AhnLab]36
Suspicious.MH690 [Symantec]35
BackDoor-CEP.gen.am [McAfee]33
Troj/Bifrose-XE [Sophos]32
Troj/Bifrose-XO [Sophos]31
Trojan:Win32/Midgare.A [Microsoft]31
Trojan-Dropper.Win32.Stabs.elu [Kaspersky Lab]29
BackDoor-EGO [McAfee]27
Trojan.Win32.Agent.bwnu [Kaspersky Lab]26
Mal/EncPk-JU [Sophos]25
VirTool:Win32/Injector.gen!Y [Microsoft]23
BackDoor-EEF [McAfee]22
Mal/KeInject-A, Mal/EncPk-LR [Sophos]20
Backdoor.Win32.Donbot.b [Kaspersky Lab]19
BKDR_BIFROSE.DZZ [Trend Micro]19
Win-Trojan/Agent.44925.B [AhnLab]17
BKDR_BIFROSE.SMM [Trend Micro]16
Troj/Inject-JV [Sophos]16
VirTool:Win32/Injector.gen!B [Microsoft]15
Win-Trojan/Downloader.33296 [AhnLab]15
VirTool:Win32/Injector.gen!T [Microsoft]13
Trojan-Dropper.Win32.Agent.bckq [Kaspersky Lab]12
VirTool:Win32/CeeInject.gen!J [Microsoft]12
BackDoor-DOQ.gen.e [McAfee]11
Generic MSVC.h [McAfee]11
Trojan-Spy.Win32.Agent.azbj [Kaspersky Lab]11
Backdoor.Trojan [PC Tools]9
Generic.dx [McAfee]9
Troj/Agent-JRN [Sophos]9
Trojan.Generic [PC Tools]9
Backdoor.Bifrose!sd6 [PC Tools]8
Dropper/Stabs.48541 [AhnLab]8
Backdoor-CEP.gen.r [McAfee]7
BackDoor-EBI.gen [McAfee]7
Mal/EncPk-JU, Mal/Behav-103, Mal/Behav-043 [Sophos]7
Troj/Inject-HI [Sophos]7
W32.SillyFDC [Symantec]7
Win-Trojan/Agent.57725 [AhnLab]6
Downloader [Symantec]5
Downloader-BYK [McAfee]5
Mal/Behav-243 [Sophos]5
Trojan.Pandex [Symantec]5
Trojan.Win32.Buzus.aoar [Kaspersky Lab]5
Trojan.Win32.DelfInject.b [Kaspersky Lab]5
Trojan.Win32.Refroso.ktw [Kaspersky Lab]5
VirTool:Win32/Injector.B [Microsoft]5
VirTool:Win32/Injector.gen!AH [Microsoft]5
Win32/IRCBot.worm.variant [AhnLab]5
Backdoor.Agent.UWP [PC Tools]4
Backdoor.Win32.Agent.vql [Kaspersky Lab]4
Backdoor.Win32.Bifrose.arqg [Kaspersky Lab]4
Backdoor.Win32.Bifrose.atbz [Kaspersky Lab]4
Backdoor.Win32.IRCBot.lav [Kaspersky Lab]4
Backdoor.Win32.Poison.aphr [Kaspersky Lab]4
Backdoor-CEP!g [McAfee]4
Backdoor-CEP.gen.m [McAfee]4
Dropper/Stabs.45314 [AhnLab]4
Mal/Inject-P [Sophos]4
PE_PARITE.A [Trend Micro]4
PWS:Win32/Stealer.M [Microsoft]4
Troj/Bifrose-ZC [Sophos]4
Trojan.Win32.Inject.achx [Kaspersky Lab]4
VirTool:Win32/CeeInject.gen!AA [Microsoft]4
VirTool:Win32/CeeInject.gen!AJ [Microsoft]4
VirTool:Win32/CeeInject.gen!AO [Microsoft]4
VirTool:Win32/CeeInject.gen!Y [Microsoft]4
VirTool:Win32/Injector.gen!E [Microsoft]4
Virus:Win32/Parite.B [Microsoft]4
W32.Spybot.Worm [Symantec]4
W32/Parite-B [Sophos]4
W32/Pate.b [McAfee]4
Win32/Kolab.worm.Gen [AhnLab]4
Win32/Parite [AhnLab]4
Win-Trojan/Agent.8192.ST [AhnLab]4
Win-Trojan/Inject.44032.AL [AhnLab]4
Backdoor.Win32.Bifrose.auzd [Kaspersky Lab]3
Backdoor-DZD [McAfee]3
Generic Dropper [McAfee]3
Mal/Behav-346, Mal/Inject-P [Sophos]3
Mal/MDrop-Gen [Sophos]3
Mudgare.gen.a [McAfee]3
Troj/Inject-JC [Sophos]3
Trojan.Dropper [PC Tools]3
Trojan.Win32.Buzus.ajkx [Kaspersky Lab]3
VirTool:Win32/Injector.gen!AB [Microsoft]3

VirTool.Win32.Injector [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Portugal149
Saudi Arabia6
Russian Federation5
Spain3
France2
Argentina1
China1
Sweden1
Ukraine1

VirTool.Win32.Injector [Ikarus] is known to be created as:
%AppData%\bifrost\server.exe
%AppData%\microsoft\svchost.exe
%Profiles%\1.2.1.exe
%Profiles%\default user\start menu\programs\startup\sexy.exe
%Profiles%\server.exe
%Profiles%\zz.exe
%ProgramFiles%\_rejoice2009.exe
%ProgramFiles%\anti-virus\server.exe
%ProgramFiles%\bbb\server.exe
%ProgramFiles%\bifrost\nu.exe
%ProgramFiles%\bifrost\sede.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\bifrost\steve.exe
%ProgramFiles%\bifrost\win.exe
%ProgramFiles%\bifrost\zx.exe
%ProgramFiles%\hack00.exe
%ProgramFiles%\internet explor\hmmapi.exe
%ProgramFiles%\jnooony\coffin.exe
%ProgramFiles%\messenger\msnm.exe
%ProgramFiles%\microsoft\experience.exe
%ProgramFiles%\sesteems\server.exe
%ProgramFiles%\system32\dll.exe
%ProgramFiles%\system32\system32.exe
%ProgramFiles%\systen\win32.exe
%ProgramFiles%\website\server.exe
%ProgramFiles%\windows\windows.exe
%ProgramFiles%\windowsdll\windows.exe
%System%\2system\1system.exe
%System%\bader.exe
%System%\bifrost\server.exe
%System%\bifrost\win.exe
%System%\clen.exe
%System%\cmd32.exe
%System%\computer\system.exe
%System%\dllwt\dlldh.exe
%System%\dvadhick.exe
%System%\explore\explore.exe
%System%\explorer\explorer.exe
%System%\hard\server.exe
%System%\helpme.exe
%System%\javaa.exe
%System%\jhn\jhn.exe
%System%\jushred.exe
%System%\massenger live\server.exe
%System%\microsoft\system.exe
%System%\microsoftnt\microsoftnt.exe
%System%\mmsvc32.exe
%System%\mse\jpg.exe
%System%\msfain32.exe
%System%\msn\msn.exe
%System%\nod32\nod32.exe
%System%\nod64.exe
%System%\programs\antiaimer.exe
%System%\progrms\az.exe
%System%\q1g\sref.exe
%System%\rst.exe
%System%\s5s15\server.exe
%System%\shelldm.exe
%System%\spools.exe
%System%\svhost\plugins.exe
%System%\sys\system32.exe
%System%\sysdll\runsys.exe
%System%\system\win.exe
%System%\system32\svbhost.exe
%System%\system32\svchost.exe
%System%\system32\system32.exe
%System%\tx.exe
%System%\update.exe
%System%\win.exe
%System%\win\win.exe
%System%\win\windows.exe
%System%\win32\svchost.exe
%System%\wind\windows.exe
%System%\windirxappx.exe
%System%\windo\windows.exe
%System%\windows live\iexplorer.exe
%System%\windows\server.exe
%Temp%\090602-a-7.exe
%Temp%\1.exe
%Temp%\1atmpvcnoo.exe
%Temp%\2.exe
%Temp%\avira.exe
%Temp%\bifrost_1.2.1d\server.exe
%Temp%\biwdeljl.exe
%Temp%\ccp.exe
%Temp%\file3.exe
%Temp%\hacker-alajman.exe
%Temp%\ixp000.tmp\1.exe
%Temp%\ixp000.tmp\31.exe
%Temp%\ixp000.tmp\7-23.exe
%Temp%\ixp000.tmp\9orty.exe
%Temp%\ixp000.tmp\aa.exe
%Temp%\ixp000.tmp\addons.exe
%Temp%\ixp000.tmp\imsg.exe
%Temp%\ixp000.tmp\kabo.exe
%Temp%\ixp000.tmp\memo.exe
%Temp%\ixp000.tmp\msnmgr.exe
%Temp%\ixp000.tmp\register.exe
%Temp%\ixp000.tmp\server.exe
%Temp%\ixp000.tmp\sm00ka.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).