Threat Search: 

ThreatExpert's Statistics for Virus.Trojan.Win32.VB [Ikarus]:

Virus.Trojan.Win32.VB [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]36
Win-Trojan/Xema.variant [AhnLab]11
Trojan.Win32.VB.kln [Kaspersky Lab]10
Trojan.Win32.VB.jke [Kaspersky Lab]9
VirTool:Win32/VBInject.gen!U [Microsoft]9
Virus:Win32/Sality.AM [Microsoft]8
Generic PUP.x [McAfee]7
Generic.dx [McAfee]7
Trojan.Win32.VB.dyt [Kaspersky Lab]7
VirTool:Win32/VBInject.gen!C [Microsoft]7
Virus.Win32.Sality.aa [Kaspersky Lab]7
W32.Virut.W [Symantec]7
W32/Sality.gen [McAfee]7
W32/Sality-AM [Sophos]7
Mal/Generic-A [Sophos]6
Trojan.Win32.VB.das [Kaspersky Lab]6
W32/Autorun.worm.h [McAfee]6
Worm:Win32/Autorun.gen!BE [Microsoft]6
PE_VIRUT.AV [Trend Micro]5
Trojan.Win32.VB.hpq [Kaspersky Lab]5
VirTool:Win32/Vcrypt.B [Microsoft]5
Virus.Win32.Virut.av [Kaspersky Lab]5
Virus:Win32/Virut.AC [Microsoft]5
W32/Virut.gen.a [McAfee]5
W32/Virut-W [Sophos]5
Win32.Virut.Gen.4 [PC Tools]5
Generic Downloader.a [McAfee]4
Mal/Behav-789 [Sophos]4
Suspicious.MH690 [Symantec]4
Troj/Mdrop-BYR [Sophos]4
Troj/VB-EBX [Sophos]4
Mal/VB-F, Mal/Behav-043 [Sophos]3
Trojan.Win32.VB.fov [Kaspersky Lab]3
Trojan.Win32.VB.hzq [Kaspersky Lab]3
VirTool:Win32/VBInject.Z [Microsoft]3
W32/Autorun-WO [Sophos]3
W32/Vetor-A [Sophos]3
W32/Virut.gen [McAfee]3
Win32/Kashu.B [AhnLab]3
BackDoor-CEP.svr [McAfee]2
Generic VB.i [McAfee]2
Packed.Win32.CPEX-based.ht [Kaspersky Lab]2
PE_SALITY.EN [Trend Micro]2
PE_SALITY.EN-1 [Trend Micro]2
PE_SALITY.JER [Trend Micro]2
PE_VIRUT.XP [Trend Micro]2
Trojan.VB!sd6 [PC Tools]2
Trojan.VB.das [PC Tools]2
Trojan.Win32.VB.fsg [Kaspersky Lab]2
Trojan:Win32/Provis!rts [Microsoft]2
VirTool:Win32/Acillatem [Microsoft]2
VirTool:Win32/VBInject.gen!AN [Microsoft]2
Virus.Win32.Virut.ce [Kaspersky Lab]2
Virus.Win32.Virut.q [Kaspersky Lab]2
Virus:Win32/Virut.BM [Microsoft]2
W32.Sality.AE [Symantec]2
W32.Virut.CF [Symantec]2
W32.Virut.U [Symantec]2
W32/Scribble-B [Sophos]2
W32/Virut.j [McAfee]2
W32/Virut.n.gen [McAfee]2
Win32.Virut.Gen.5 [PC Tools]2
Win32/Virut.F [AhnLab]2
Backdoor.Bifrose [Symantec]1
Backdoor.Colfusion [Symantec]1
Backdoor.Trojan [Symantec]1
Backdoor.Win32.Poison.vmp [Kaspersky Lab]1
Backdoor:Win32/MSNTwo [Microsoft]1
Generic BackDoor [McAfee]1
Generic Downloader.x [McAfee]1
Generic Dropper.gi.gen [McAfee]1
Generic VB.b [McAfee]1
Generic VB.c [McAfee]1
Generic VB.f [McAfee]1
Generic.dx!dqe [McAfee]1
Mal/Behav-043, Mal/Sality-B [Sophos]1
Mal/Behav-043, W32/Virut-Gen [Sophos]1
Mal/Behav-103 [Sophos]1
Mal/Behav-211 [Sophos]1
Mal/Behav-789, Mal/Behav-789 [Sophos]1
Mal/Generic-E [Sophos]1
Mal/Packer [Sophos]1
Mal/VB-AA [Sophos]1
Mal/VB-Z [Sophos]1
MSNpws.Trojan [Symantec]1
PE_SALITY.BU [Trend Micro]1
PE_SALITY.EK [Trend Micro]1
PE_VIRUT.AP [Trend Micro]1
PE_VIRUT.BA [Trend Micro]1
PE_VIRUX.E-2 [Trend Micro]1
Troj/Agent-FXF [Sophos]1
Troj/Agent-GVV [Sophos]1
Troj/DwnLdr-HJQ [Sophos]1
Troj/Pasod-Gen [Sophos]1
Troj/VB-BGL [Sophos]1
Trojan.DR.Delf.AFOH [PC Tools]1
Trojan.Generic [PC Tools]1
Trojan.VB!sd5 [PC Tools]1
Trojan.Win32.Agent.arfw [Kaspersky Lab]1
Trojan.Win32.VB.fnb [Kaspersky Lab]1

Virus.Trojan.Win32.VB [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China2
Spain2
Germany1
Netherlands1
Russian Federation1
Turkey1

Virus.Trojan.Win32.VB [Ikarus] is known to be created as:
%AppData%\explorer.exe
%AppData%\lsass.exe
%AppData%\microsoft\winlog.exe
%ProgramFiles%\bifrost\server.exe
%System%\cmjzsg.exe
%System%\dxgdialog.exe
%System%\fbxtwk.exe
%System%\ntos.exe
%System%\save.exe
%System%\server.exe
%System%\speet.exe
%System%\temp1.exe
%System%\win2x.exe
%Temp%\decrypted.exe
%Temp%\ixp000.tmp\settings.exe
%Temp%\kafan virlist 2009.04.02\090402-5-8.exe
%Temp%\stub.exe
%Temp%\swhost.exe
%Windir%\winip.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.