Threat Search: 

ThreatExpert's Statistics for VirTool.Win32.VBInject [Ikarus]:

VirTool.Win32.VBInject [Ikarus] is also known as:
Threat AliasNumber of Incidents
VirTool:Win32/VBInject.gen!U [Microsoft]187
Troj/VB-EBX [Sophos]153
Trojan Horse [Symantec]135
Mal/Generic-A [Sophos]100
VirTool:Win32/VBInject.gen!AN [Microsoft]57
BackDoor-CEP.svr [McAfee]54
VirTool:Win32/VBInject.gen!BW [Microsoft]44
Win-Trojan/Xema.variant [AhnLab]43
BackDoor-DVL [McAfee]29
Generic VB.i [McAfee]28
Trojan.Generic [PC Tools]26
VirTool:Win32/VBInject.gen!Q [Microsoft]25
Backdoor.Trojan [Symantec]23
VirTool:Win32/VBInject.gen!BP [Microsoft]22
VirTool:Win32/VBInject.gen!BY [Microsoft]22
W32.SillyDC [Symantec]19
Generic Dropper.gi.gen [McAfee]17
Backdoor.Win32.VB.hvf [Kaspersky Lab]16
VirTool:Win32/VBInject.DN [Microsoft]16
Trojan-Dropper.Win32.Pincher.tl [Kaspersky Lab]15
Mal/VB-AO, Mal/VB-AB [Sophos]14
Trojan.Win32.Agent2.fgg [Kaspersky Lab]14
VirTool:Win32/VBInject.gen!BA [Microsoft]14
Trojan.Win32.Inject.agye [Kaspersky Lab]13
Mal/Behav-789 [Sophos]12
Trojan.Win32.VB.lku [Kaspersky Lab]12
VirTool:Win32/Vbinder.gen!GL [Microsoft]12
Backdoor.Win32.VB.hov [Kaspersky Lab]11
Infostealer [Symantec]11
Mal/Inject-Q [Sophos]10
W32.Spybot.Worm [Symantec]10
Generic.dx [McAfee]9
VirTool:Win32/VBInject.AQ [Microsoft]9
VirTool:Win32/VBInject.gen!Z [Microsoft]9
PE_VIRUT.AV [Trend Micro]8
Suspicious.MH690 [Symantec]8
Trojan-Downloader.Win32.VB.lav [Kaspersky Lab]8
VirTool:Win32/Vbinder.gen!G [Microsoft]8
VirTool:Win32/VBInject.gen!BI [Microsoft]8
Virus.Win32.Virut.av [Kaspersky Lab]8
Virus:Win32/Virut.AC [Microsoft]8
W32.Virut.W [Symantec]8
W32/Virut.gen.a [McAfee]8
W32/Virut-W [Sophos]8
Win32.Virut.Gen.4 [PC Tools]8
Win32/Virut.B [AhnLab]8
Backdoor.Win32.ProRat.eeh [Kaspersky Lab]7
Backdoor.Win32.VB.hxe [Kaspersky Lab]7
Mal/VBInject-D [Sophos]7
Trojan.Win32.VB.nkc [Kaspersky Lab]7
VirTool:Win32/VBInject.gen!BU [Microsoft]7
VirTool:Win32/VBInject.T [Microsoft]7
VirTool:Win32/VBInject.U [Microsoft]7
Generic BackDoor [McAfee]6
Generic Dropper [McAfee]6
Mal/Vbinder-A [Sophos]6
Spyware.Screenspy [Symantec]6
Troj/VBInject-E [Sophos]6
Trojan.Win32.VB.htg [Kaspersky Lab]6
VirTool:Win32/VBInject.AM [Microsoft]6
Virus:Win32/Sality.AM [Microsoft]6
W32.Sality.AE [Symantec]6
Win-Trojan/Prorat.61440.AL [AhnLab]6
Backdoor.Win32.Bifrose.aimu [Kaspersky Lab]5
Backdoor.Win32.Bifrose.bmvv [Kaspersky Lab]5
BackDoor-DKI.gen.aj [McAfee]5
Generic VB.ay [McAfee]5
Mal/Behav-211 [Sophos]5
Mal/VB-AD [Sophos]5
Trojan.Win32.VB.mtm [Kaspersky Lab]5
Trojan.Win32.VBKrypt.z [Kaspersky Lab]5
VirTool:Win32/VBInject.X [Microsoft]5
W32/Sality.gen [McAfee]5
W32/Scribble-B [Sophos]5
Win-Trojan/Poison.139264.C [AhnLab]5
Win-Trojan/Poison.53807 [AhnLab]5
Backdoor.Win32.Poison.aqpp [Kaspersky Lab]4
Backdoor.Win32.Poison.aqqf [Kaspersky Lab]4
Backdoor:Win32/Bifrose.GW [Microsoft]4
Backdoor-DZQ [McAfee]4
Generic VB.c [McAfee]4
Generic.dx!mks [McAfee]4
Mal/Inject-H [Sophos]4
Mal/VBDrop-I [Sophos]4
Trojan.Dropper [Symantec]4
Trojan.Win32.Agent2.eeh [Kaspersky Lab]4
Trojan.Win32.Buzus.amkv [Kaspersky Lab]4
Trojan.Win32.Buzus.dcdi [Kaspersky Lab]4
Trojan.Win32.StartPage.djv [Kaspersky Lab]4
Trojan.Win32.VB [Ikarus]4
Trojan.Win32.VB.uci [Kaspersky Lab]4
Trojan.Win32.VB.uzs [Kaspersky Lab]4
VirTool:Win32/VBInject.CA [Microsoft]4
VirTool:Win32/VBInject.DD [Microsoft]4
VirTool:Win32/VBInject.G [Microsoft]4
VirTool:Win32/VBInject.gen!AV [Microsoft]4
W32.Virut.CF [Symantec]4
W32/Autorun-ASB [Sophos]4
W32/Sality-AM [Sophos]4
Win32/Kashu.B [AhnLab]4

VirTool.Win32.VBInject [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Spain76
Germany37
Turkey11
Russian Federation7
France5
Brazil3
United Kingdom3
Taiwan2
China1
Norway1
Portugal1
Saudi Arabia1
Slovakia1
Sweden1

VirTool.Win32.VBInject [Ikarus] is known to be created as:
%AppData%\bifrost\server.exe
%AppData%\kopu\hy.exe
%AppData%\microsoft\svchost.exe
%AppData%\microsoft\winlog.exe
%AppData%\microsoft\winlogon.exe
%AppData%\msn\msn.exe
%AppData%\svchost.exe
%AppData%\systemproc\lsass.exe
%MyDocuments%\my music\40381.exe
%ProgramFiles%\2gpx\2gpx.exe
%ProgramFiles%\a1a1a-ramdan.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\common files\system\smss.exe
%ProgramFiles%\complus applications\svchost.exe
%ProgramFiles%\dll32\unicollws.exe
%ProgramFiles%\eiiiidon.exe
%ProgramFiles%\etxejg\cravsysguard.exe
%ProgramFiles%\explorer\explorer.exe
%ProgramFiles%\fraps\igfxwin.exe
%ProgramFiles%\kopu\hy.exe
%ProgramFiles%\livemsn\kb831909.exe
%ProgramFiles%\lnseyf\vjbdsysguard.exe
%ProgramFiles%\massenger live\server.exe
%ProgramFiles%\msn\msnmsgn.exe
%ProgramFiles%\sss.exe
%ProgramFiles%\storkpk_cache\storkpk.exe
%ProgramFiles%\system\wins.exe
%ProgramFiles%\win\win.exe
%ProgramFiles%\winamp\server.exe
%ProgramFiles%\wind\win.exe
%ProgramFiles%\windows live\msn.exe
%ProgramFiles%\windows update\update.exe
%ProgramFiles%\windowstn\updater.exe
%ProgramFiles%\xkcpta\bvvesysguard.exe
%Programs%\startup\autostart.exe
%System%\6373n\6373n.exe
%System%\a09sdfhasd89fhas.exe
%System%\alp.exe
%System%\autorun.exe
%System%\avg.exe
%System%\avgs.exe
%System%\bifrost\bifrost.exe
%System%\bifrost\ido.exe
%System%\bifrost\photo.exe
%System%\bifrost\sect.exe
%System%\bifrost\server.exe
%System%\brkyur.exe
%System%\calc32.exe
%System%\cerbe\sater.exe
%System%\cerberus\server.exe
%System%\clientt.exe
%System%\cmd32.exe
%System%\config32\system.exe
%System%\cssrss.exe
%System%\dllcache\windir32.exe
%System%\drivers\ntndis.exe
%System%\drivers\svshost.exe
%System%\explorer.exe
%System%\explorer\explorer.exe
%System%\firewal.exe
%System%\foxusx.exe
%System%\hjzetk.exe
%System%\hldolg.exe
%System%\iexplorer.exe
%System%\ihyyln.exe
%System%\instaler.exe
%System%\installer\svchost.exe
%System%\installl\berver.exe
%System%\keygen.exe
%System%\kjvpa.exe
%System%\lool.exe
%System%\lsm32.sys
%System%\lsmn\lsmn.exe
%System%\messenger.exe
%System%\messenger\msn.exe
%System%\mhvgne.exe
%System%\microsoft\win23.exe
%System%\msgfix.exe
%System%\msn.exe
%System%\msn\msn.exe
%System%\msnmsger.exe
%System%\msnmsgr.exe
%System%\msq23.exe
%System%\mwe.exe
%System%\nesblz.exe
%System%\nifrost\server.exe
%System%\nokia\server.exe
%System%\ntos.exe
%System%\rbot_4q0xrg9w2vvcnst302roix.exe
%System%\rbot_6kyi2396w21es1j4i0pa9.exe
%System%\reg_edit.exe
%System%\regeditv8.exe
%System%\rlsxvz.exe
%System%\rundl32.exe
%System%\rundlll32.exe
%System%\sdra64.exe
%System%\serve.exe
%System%\server.exe
%System%\spf\spf.exe
%System%\stub.dll
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %MyDocuments% is a variable that refers to the file system directory used to physically store a user's common repository of documents. A typical path is C:\Documents and Settings\[UserName]\My Documents.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).