Threat Search: 

ThreatExpert's Statistics for Virus.Win32.VB [Ikarus]:

Virus.Win32.VB [Ikarus] is also known as:
Threat AliasNumber of Incidents
Trojan Horse [Symantec]29
Mal/Generic-A [Sophos]23
Generic.dx [McAfee]18
Win-Trojan/Xema.variant [AhnLab]14
Hacktool [Symantec]13
Trojan-PSW.Win32.VB.aad [Kaspersky Lab]12
VirTool:Win32/VBInject.gen!BB [Microsoft]11
W32.SillyFDC [Symantec]11
Mal/EncPk-DV [Sophos]10
Worm.Autorun.Gen.6 [PC Tools]10
Worm:Win32/Autorun.BW [Microsoft]10
Net-Worm.Win32.Kolab.bdi [Kaspersky Lab]9
W32/Autorun.worm.cu [McAfee]9
Worm.Win32.AutoRun.dib [Kaspersky Lab]9
WORM_AUTORUN.BFN [Trend Micro]9
Backdoor.Trojan [Symantec]8
Generic VB.i [McAfee]8
Trojan.Dropper [Symantec]8
VirTool:Win32/Selcrypt.A [Microsoft]8
Backdoor-CEP.gen.p [McAfee]7
Trojan-Spy.Win32.VB.awy [Kaspersky Lab]7
Win-Trojan/Bifrose.147837 [AhnLab]7
Generic Dropper [McAfee]6
Generic PWS.y [McAfee]6
Troj/Mdrop-BYM [Sophos]6
Win-Trojan/VBInject.127357 [AhnLab]6
Troj/SDFDrp-Gen [Sophos]5
Trojan:Win32/VB [Microsoft]5
Virus:Win32/Sality.AM [Microsoft]5
W32.Sality.AE [Symantec]5
W32/Sality-AM [Sophos]5
Generic Dropper.hf [McAfee]4
Troj/Dropr-BG [Sophos]4
Trojan.Win32.VB.ile [Kaspersky Lab]4
VirTool:Win32/Vbinder.P [Microsoft]4
VirTool:Win32/Vbinder.V [Microsoft]4
VirTool:Win32/Vtub.Y [Microsoft]4
Virus.Win32.Sality.aa [Kaspersky Lab]4
W32/Sality.gen [McAfee]4
Win32/Autorun.worm.53760 [AhnLab]4
Infostealer [Symantec]3
Mal/VB-F [Sophos]3
Mal/VB-Z, Mal/Behav-211 [Sophos]3
Trojan.Win32.Buzus.afdu [Kaspersky Lab]3
Backdoor.Poison [PC Tools]2
Backdoor-CEP [McAfee]2
Generic BackDoor [McAfee]2
Generic VB.b [McAfee]2
Mal/VB-AB [Sophos]2
Packed.Win32.CPEX-based.zi [Kaspersky Lab]2
PE_SALITY.JER [Trend Micro]2
Trojan.Dropper [PC Tools]2
Trojan.Win32.Midgare.pqj [Kaspersky Lab]2
Trojan.Win32.VB.guw [Kaspersky Lab]2
Trojan.Win32.VB.ihj [Kaspersky Lab]2
Trojan.Win32.VB.ktq [Kaspersky Lab]2
Trojan:Win32/Meredrop [Microsoft]2
VirTool:Win32/Vbcrypt.F [Microsoft]2
VirTool:Win32/VBInject.gen!AN [Microsoft]2
VirTool:Win32/VBInject.K [Microsoft]2
Virus.Win32.VB.md [Kaspersky Lab]2
W32.Ircbrute [Symantec]2
W32.SillyDC [Symantec]2
W32/SillyFDC-DS [Sophos]2
Win32/Kashu.B [AhnLab]2
Win-Trojan/Bifrose.77824.Q [AhnLab]2
Worm.Win32.Basun.wrn [Kaspersky Lab]2
Worm:Win32/Vobfus.E [Microsoft]2
WORM_AUTORUN.FMU [Trend Micro]2
Backdoor.Bifrose.alpf [PC Tools]1
Backdoor.Poison!sd6 [PC Tools]1
Backdoor.Win32.Bifrose.aocx [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bbmu [Kaspersky Lab]1
Backdoor.Win32.Bifrose.betq [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bfyo [Kaspersky Lab]1
Backdoor.Win32.EggDrop.19 [Kaspersky Lab]1
Backdoor.Win32.Poison.accu [Kaspersky Lab]1
Backdoor.Win32.Poison.aeac [Kaspersky Lab]1
Backdoor.Win32.Poison.tdh [Kaspersky Lab]1
Backdoor.Win32.Poison.tyj [Kaspersky Lab]1
Backdoor.Win32.Poison.ula [Kaspersky Lab]1
Backdoor.Win32.Poison.wby [Kaspersky Lab]1
Backdoor.Win32.VB.htk [Kaspersky Lab]1
Backdoor:Win32/EggDrop [Microsoft]1
Backdoor:Win32/Poisonivy.E [Microsoft]1
BackDoor-CEP.svr [McAfee]1
Constructor.Win32.Binder.bv [Kaspersky Lab]1
Cryp_Upxscram [Trend Micro]1
Downloader [Symantec]1
Dropper/Agent.434176.C [AhnLab]1
Generic AdClicker.a [McAfee]1
Generic Dropper!hh [McAfee]1
Generic Dropper.eg [McAfee]1
Generic VB.h [McAfee]1
Generic.dx!ca [McAfee]1
Generic.dx!of [McAfee]1
HackTool.Win32.SJoin.e [Kaspersky Lab]1
Hoax.Win32.BadJoke.CrazyMouse.b [Kaspersky Lab]1
INF.Autorun.Gen [PC Tools]1
Mal/Behav-035, Mal/StartP-A, Mal/Emogen-H [Sophos]1

Virus.Win32.VB [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Germany35
Spain7
China6
Russian Federation3
Brazil2
Italy1
Morocco1
Netherlands1
Portugal1
Turkey1

Virus.Win32.VB [Ikarus] is known to be created as:
%CommonPrograms%\startup\svchots.exe
%DesktopDir%\desktop.exe
%Favorites%\favorites.exe
%Favorites%\links\links.exe
%MyDocuments%\musica.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\bifrost\svchost32.exe
%ProgramFiles%\electron.exe
%ProgramFiles%\microsoft office\winword.exe
%ProgramFiles%\uppdate\update.exe
%ProgramFiles%\windowslive\windowslive.exe
%Programs%\programs.exe
%Programs%\startup\musica.exe
%Programs%\startup\svchots.exe
%System%\aio.exe
%System%\aknnkku.exe
%System%\bifrost\server.exe
%System%\cssms32.exe
%System%\intetnet.exe
%System%\kca-xp.exe
%System%\media.exe
%System%\nod64.exe
%System%\nwiz.exe
%System%\services\all.exe
%System%\svchots.exe
%System%\system.exe
%System%\system\gazerock.exe
%System%\system\gazette.exe
%System%\system\nugen.exe
%System%\system\smss.exe
%System%\system\svchost32.exe
%System%\system\virgear.exe
%System%\system32dll.exe
%System%\twext.exe
%System%\vrldonm.exe
%System%\win32ini\svchost.exe
%System%\winavgs.exe
%Temp%\bifrost-indtc.exe
%Temp%\e9t3.exe
%Temp%\installer-windows.exe
%Temp%\ixp000.tmp\settings.exe
%Temp%\ixp000.tmp\ty4.exe
%Temp%\lightningcrypter.exe
%Temp%\lulzcrip-lc.exe
%Temp%\monica_dmc000273.jpg.exe
%Windir%\cftmon32.exe
%Windir%\cisvc.exe
%Windir%\clock.avi..exe
%Windir%\ducq\ducq.exe
%Windir%\kernai.exe
%Windir%\nail.exe
%Windir%\ntservices.exe
%Windir%\scvhost.exe
%Windir%\septic.exe
%Windir%\service.exe
%Windir%\shvhost.exe
%Windir%\svch0st.exe
%Windir%\system\aio.exe
%Windir%\system\svchost.exe
%Windir%\system32:mscrm.exe
%Windir%\wintask.exe
%Windir%\wkisvr.exe
c:\images\ce_pen9god4.exe
c:\musica.exe
c:\myimages.exe
c:\next\files\next.exe
c:\palma.exe
c:\recycler\k-1-3542-4232123213-7676767-8888886\hn.exe
Notes:
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %DesktopDir% is a variable that refers to the file system directory used to physically store file objects on the desktop. A typical path is C:\Documents and Settings\[UserName]\Desktop.
  • %Favorites% is a variable that refers to the file system directory that serves as a common repository for the user's favorite items. A typical path is C:\Documents and Settings\[UserName]\Favorites.
  • %MyDocuments% is a variable that refers to the file system directory used to physically store a user's common repository of documents. A typical path is C:\Documents and Settings\[UserName]\My Documents.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.