Threat Search: 

ThreatExpert's Statistics for Virus.Win32.Agent.GZY [Ikarus]:

Virus.Win32.Agent.GZY [Ikarus] is also known as:
Threat AliasNumber of Incidents
New Win32 [McAfee]40
Generic BackDoor.t [McAfee]39
New Malware.bx [McAfee]39
Mal/Behav-027 [Sophos]38
Trojan:Win32/Qhost.V [Microsoft]31
Backdoor.Win32.Agent.rtg [Kaspersky Lab]29
Trojan.Panddos [Symantec]29
Backdoor.GirlinRed [PC Tools]27
Mal/Generic-A [Sophos]25
Win32/MalPackedB.suspicious [AhnLab]24
Backdoor.Graybird [Symantec]13
Generic PWS.y [McAfee]13
Suspicious.MH690 [Symantec]13
Downloader [Symantec]12
Worm.Win32.AutoRun.rwr [Kaspersky Lab]12
Trojan Horse [Symantec]11
Generic BackDoor.c [McAfee]10
Generic.dx [McAfee]10
Mal/Dropper-P [Sophos]10
TrojanSpy:Win32/Agent.PI [Microsoft]10
Trojan.Buzus [PC Tools]9
TrojanSpy:Win32/Agent.BX [Microsoft]9
Backdoor.Win32.GirlinRed.eg [Kaspersky Lab]8
VirTool:Win32/CeeInject.gen!J [Microsoft]8
Infostealer.Gampass [Symantec]7
not-a-virus:RiskTool.Win32.Crypter.c [Kaspersky Lab]5
Troj/Agent-HIP [Sophos]5
W32.SillyFDC [Symantec]5
W32/Autorun.worm.gen [McAfee]5
Backdoor.Trojan [Symantec]4
Constructor.Win32.SlhBack.aj [Kaspersky Lab]4
Generic Downloader.k [McAfee]4
VirTool:Win32/DelfInject.gen!X [Microsoft]4
Worm.Win32.AutoRun.acua [Kaspersky Lab]4
Worm.Win32.AutoRun.pnc [Kaspersky Lab]4
Backdoor.Bifrose [Symantec]3
Backdoor.Win32.Poison.pg [Kaspersky Lab]3
Backdoor:Win32/Bifrose.gen!B [Microsoft]3
TROJ_AGENT.ALKB [Trend Micro]3
Trojan:Win32/Sisron [Microsoft]3
TrojanDownloader:Win32/Pangu.A [Microsoft]3
Virus.Win32.Sality.l [Kaspersky Lab]3
Win-Trojan/Agent.16148 [AhnLab]3
Backdoor.Win32.Hupigon.cxwe [Kaspersky Lab]2
Backdoor.Win32.Hupigon.fhrc [Kaspersky Lab]2
Backdoor:Win32/Small.D [Microsoft]2
Constructor.Win32.Bifrose.j [Kaspersky Lab]2
Infostealer.Bancos [Symantec]2
Mal/Behav-058, Mal/Hupig-D, Mal/Behav-149 [Sophos]2
PE_VIRUT.D [Trend Micro]2
PWS:Win32/Kotwir.A.dll [Microsoft]2
PWS:Win32/Kotwir.C [Microsoft]2
PWS:Win32/OnLineGames.FU [Microsoft]2
PWS-Mmorpg.gen [McAfee]2
TROJ_PANDEX.CH [Trend Micro]2
Trojan:Win32/Rirlged.gen!B [Microsoft]2
Trojan-Downloader.Win32.Delf.qju [Kaspersky Lab]2
TrojanDropper:Win32/Mund.A [Microsoft]2
Trojan-GameThief.Win32.OnLineGames.snfs [Kaspersky Lab]2
Trojan-Spy.Gampass!sd6 [PC Tools]2
VirTool:Win32/DelfInject.gen!L [Microsoft]2
Virus.Win32.Virut.n [Kaspersky Lab]2
Virus:Win32/Sality.G [Microsoft]2
Virus:Win32/Virut.AK [Microsoft]2
W32.HLLP.Sality.O [Symantec]2
W32.Koobface.A [Symantec]2
W32.Virut.B [Symantec]2
W32/Sality-I [Sophos]2
W32/Vetor-A [Sophos]2
W32/Virut.gen [McAfee]2
Win32.Virut.Gen [PC Tools]2
Win-Trojan/Agent.43008.CV [AhnLab]2
Win-Trojan/Agent.86016.FC [AhnLab]2
Win-Trojan/Xema.variant [AhnLab]2
Worm.AutoRun!sd6 [PC Tools]2
Worm.Win32.AutoRun.lye [Kaspersky Lab]2
Worm:Win32/SillyShareCopy.gen [Microsoft]2
WORM_AUTORUN.SA [Trend Micro]2
Backdoor.Bifrose!sd6 [PC Tools]1
Backdoor.Bifrose.AHY [PC Tools]1
Backdoor.Win32.Agent.qay [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bwt [Kaspersky Lab]1
Backdoor.Win32.Bifrose.fmv [Kaspersky Lab]1
Backdoor.Win32.Bifrose.qke [Kaspersky Lab]1
Backdoor.Win32.GirlinRed.gh [Kaspersky Lab]1
Backdoor.Win32.GirlinRed.gk [Kaspersky Lab]1
Backdoor.Win32.GirlinRed.gn [Kaspersky Lab]1
Backdoor.Win32.GirlinRed.gw [Kaspersky Lab]1
Backdoor.Win32.GirlinRed.ly [Kaspersky Lab]1
Backdoor.Win32.Hupigon.dluh [Kaspersky Lab]1
Backdoor.Win32.Hupigon.dsiy [Kaspersky Lab]1
Backdoor.Win32.IRCBot.gen [Kaspersky Lab]1
Backdoor.Win32.Small.cqw [Kaspersky Lab]1
Backdoor.Win32.Small.ly [Kaspersky Lab]1
Backdoor.Win32.Small.md [Kaspersky Lab]1
Backdoor.Win32.VanBot.ax [Kaspersky Lab]1
Backdoor.Win32.VB.hov [Kaspersky Lab]1
Backdoor.Win32.Wootbot.gep [Kaspersky Lab]1
Backdoor:Win32/Poebot.BL [Microsoft]1
Backdoor:Win32/Poisonivy.E [Microsoft]1

Virus.Win32.Agent.GZY [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China58
France9
Sweden8
Portugal7
Netherlands5
Saudi Arabia4
Spain3
Brazil2
Russian Federation2
Australia1
Canada1

Virus.Win32.Agent.GZY [Ikarus] is known to be created as:
%ProgramFiles%\common files\system\msadc\system32.exe
%System%\090312-3-1.exe
%System%\cass.exe
%System%\cd.exe
%System%\cellwill.exe
%System%\csrs.exe
%System%\drivers\windf.exe
%System%\ee.exe
%System%\ghdfshb.exe
%System%\kis32.exe
%System%\redgirl.exe
%System%\redgirl7.exe
%System%\saass.exe
%System%\sizhu.exe
%System%\splm\kbdsapi.dll
%System%\svchest.exe
%System%\svchosi.exe
%System%\tianlai.dll
%System%\trnsprov32.dll
%System%\winamp.exe
%System%\winsec.exe
%System%\wuauc1t.exe
%System%\zhuruqi.exe
%Temp%\2.exe
%Temp%\abdou.exe
%Temp%\rlpack.exe
c:\recycler\svchost.exe
c:\services.exe
c:\syssafe.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).