Threat Search: 

ThreatExpert's Statistics for Virus.Win32.Virut.q [Ikarus]:

Virus.Win32.Virut.q [Ikarus] is also known as:
Threat AliasNumber of Incidents
Net-Worm.Win32.Allaple.e [Kaspersky Lab]146
W32.Rahack.W [Symantec]146
W32/RAHack [McAfee]146
Win-Trojan/Starman.Gen [AhnLab]146
Worm.Allaple.Gen [PC Tools]146
Worm:Win32/Allaple.A [Microsoft]146
WORM_ALLAPLE.IK [Trend Micro]146
W32/Allaple-F [Sophos]145
W32/Virut.gen [McAfee]56
W32/Vetor-A [Sophos]48
W32.Virut.U [Symantec]38
Virus.Win32.Virut.q [Kaspersky Lab]33
Win32.Virut.Gen.5 [PC Tools]33
Virus.Win32.Virut.n [Kaspersky Lab]29
PE_VIRUT.XP [Trend Micro]25
W32.Virut.CF [Symantec]23
Win32.Virut.Gen [PC Tools]21
Virus.Win32.Virut.ce [Kaspersky Lab]18
PE_VIRUT.D [Trend Micro]17
Virus:Win32/Virut.AK [Microsoft]17
Virus:Win32/Virut.BM [Microsoft]17
W32.Virut.B [Symantec]17
Win32/Virut.D [AhnLab]15
W32/Scribble-B [Sophos]13
Worm:Win32/Mariofev.A [Microsoft]12
Virus:Win32/Virut.AE [Microsoft]11
W32/Scribble-A [Sophos]11
Win32/Virut.C [AhnLab]11
Virus:Win32/Virut.K [Microsoft]9
W32/Virut-L [Sophos]9
Win32/Virut.E [AhnLab]9
PE_VIRUT.XK [Trend Micro]8
W32.Virut.R [Symantec]8
W32/Virut.n [McAfee]8
Virus:Win32/Virut.AN [Microsoft]7
Virus:Win32/Virut.AR [Microsoft]7
W32/Virut.n.gen [McAfee]7
New Win32.g4 [McAfee]6
PE_VIRUT.AV [Trend Micro]6
Virus.Win32.Virut.av [Kaspersky Lab]6
W32.Virut.W [Symantec]6
W32/Virut.gen.a [McAfee]6
W32/Virut-W [Sophos]6
PE_VIRUT.XO [Trend Micro]5
Virus:Win32/Virut.AC [Microsoft]5
Win32/Virut.B [AhnLab]5
Virus:Win32/Sality.AH [Microsoft]4
W32.Sality.AE [Symantec]4
W32/Sality.ad [McAfee]4
W32/Sality-AM [Sophos]4
Backdoor.Wootbot.YZ [PC Tools]3
Generic.dx [McAfee]3
Mal/Generic-A [Sophos]3
PE_SALITY.AM [Trend Micro]3
Virus.Win32.Sality.ab [Kaspersky Lab]3
Virus:Win32/Virut.AP [Microsoft]3
Win32.Sality.AI.Gen [PC Tools]3
Win32/Kashu [AhnLab]3
Backdoor.Win32.Wootbot.gen [Kaspersky Lab]2
New Win32 [McAfee]2
New Win32.g3 [McAfee]2
PE_VIRUX.F-2 [Trend Micro]2
W32.Spybot.Worm [Symantec]2
W32/Autorun.worm.eb [McAfee]2
W32/Virut.remnants [McAfee]2
Win32/IRCBot.worm.variant [AhnLab]2
Win-Trojan/Patched.L [AhnLab]2
Worm:Win32/Wootbot.EE [Microsoft]2
Backdoor.Win32.Agent.dqb [Kaspersky Lab]1
Backdoor.Win32.SdBot.hlh [Kaspersky Lab]1
Backdoor:Win32/Poebot.BG [Microsoft]1
Backdoor:Win32/Rbot [Microsoft]1
Exploit.Win32.IMG-WMF.jp [Kaspersky Lab]1
Generic Dropper [McAfee]1
Generic FakeAlert.d [McAfee]1
Infostealer [Symantec]1
Infostealer.Onlinegame [Symantec]1
Mal/Behav-109 [Sophos]1
Mal/Behav-285 [Sophos]1
Mal/DelpDldr-F [Sophos]1
Mal/EncPk-BO [Sophos]1
Mal/Packer [Sophos]1
Mal/Sality-B [Sophos]1
Mal/TibsPak, W32/Vetor-A [Sophos]1
Mal/VB-F [Sophos]1
Net-Worm.Win32.Kolabc.tg [Kaspersky Lab]1
New Malware.d [McAfee]1
PE_HIPAK.A [Trend Micro]1
PE_PATCHEP.A [Trend Micro]1
PE_SALITY.BU [Trend Micro]1
PE_VIRUT.XL [Trend Micro]1
PE_VIRUT.XS [Trend Micro]1
PE_VIRUX.A [Trend Micro]1
PE_VIRUX.H-3 [Trend Micro]1
TROJ_MICROJOIN.W [Trend Micro]1
Trojan.DR.Small.UPY [PC Tools]1
Trojan.Packed.16 [Symantec]1
Trojan.Patchep!inf [Symantec]1
Trojan.Win32.Agentb.b [Kaspersky Lab]1
Trojan.Win32.Patched.aa [Kaspersky Lab]1

Virus.Win32.Virut.q [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
China7
Germany3
Russian Federation3
Spain3
France2
Republic of Korea2
Greece1
Italy1
Poland1
United Kingdom1

Virus.Win32.Virut.q [Ikarus] is known to be created as:
%CommonPrograms%\startup\ctfmon.exe
%FontsDir%\unwise_.exe
%ProgramFiles%\common files\system\ado\tsektjkj.exe
%ProgramFiles%\common files\system\msasp32.exe
%ProgramFiles%\movie maker\moviemk.exe
%ProgramFiles%\netmeeting\rsewzjqn.exe
%ProgramFiles%\thunmail\testabd.exe
%System%\03043.exe
%System%\14200.exe
%System%\21012.exe
%System%\23232.exe
%System%\33004.exe
%System%\3361\svchost.exe
%System%\44140.exe
%System%\algs.exe
%System%\bootinit.exe
%System%\bttnserv.exe
%System%\ctfmom.exe
%System%\dllcache\agentsvr.exe
%System%\dllcache\calc.exe
%System%\dllcache\charmap.exe
%System%\dllcache\cleanmgr.exe
%System%\dllcache\cmd.exe
%System%\dllcache\conf.exe
%System%\dllcache\ctfmon.exe
%System%\dllcache\drwatson.exe
%System%\dllcache\drwtsn32.exe
%System%\dllcache\dxdiag.exe
%System%\dllcache\explorer.exe
%System%\dllcache\freecell.exe
%System%\dllcache\lsoss.exe
%System%\dllcache\mmc.exe
%System%\dllcache\moviemk.exe
%System%\dllcache\msconfig.exe
%System%\dllcache\mshearts.exe
%System%\dllcache\msiexec.exe
%System%\dllcache\msimn.exe
%System%\dllcache\msinfo32.exe
%System%\dllcache\mspaint.exe
%System%\dllcache\narrator.exe
%System%\dllcache\notepad.exe
%System%\dllcache\osk.exe
%System%\dllcache\packager.exe
%System%\dllcache\perfmon.exe
%System%\dllcache\pinball.exe
%System%\dllcache\recover.exe
%System%\dllcache\redir.exe
%System%\dllcache\regapi.dll
%System%\dllcache\regedit.exe
%System%\dllcache\regedt32.exe
%System%\dllcache\regini.exe
%System%\dllcache\register.exe
%System%\dllcache\rndll32.exe
%System%\dllcache\sigverif.exe
%System%\dllcache\sol.exe
%System%\dllcache\spider.exe
%System%\dllcache\sysedit.exe
%System%\dllcache\syskey.exe
%System%\dllcache\taskkill.exe
%System%\dllcache\tasklist.exe
%System%\dllcache\taskman.exe
%System%\dllcache\taskmgr.exe
%System%\dllcache\twunk_16.exe
%System%\dllcache\twunk_32.exe
%System%\dllcache\utilman.exe
%System%\dllcache\verifier.exe
%System%\dllcache\wab.exe
%System%\dllcache\winlogon.exe
%System%\dllcache\winver.exe
%System%\dllcache\wordpad.exe
%System%\dllcache\wowexec.exe
%System%\dllcache\wpabaln.exe
%System%\dllcache\write.exe
%System%\dllcache\wuauclt.exe
%System%\dllcache\wuauclt1.exe
%System%\dllcache\wupdmgr.exe
%System%\drivers\mouseclass.sys
%System%\exlorers.exe
%System%\gyrayqu.exe
%System%\kjiqqji.exe
%System%\macromed\flash\npswf32_flashutil.exe
%System%\macromed\flash\uninstall_plugin.exe
%System%\plrkgoo.exe
%System%\qiqeyrv.exe
%System%\reader_s.exe
%System%\rs32net.exe
%System%\srxnvgp.exe
%System%\svhost.exe
%System%\system.exe
%System%\urdvxc.exe
%System%\veaevxg.exe
%System%\xpserve.exe
%System%\yqmcdgk.exe
%System%\zlyhxch.exe
%Temp%\090430-b-20.exe
%Temp%\autorunpro0\autorun.exe
%Temp%\install32.exe
%Temp%\kafan virlist 2009.04.07\090407-b-15.exe
%Temp%\msnshell\install\regsvr32.exe
%UserProfile%\reader_s.exe
Notes:
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).