Threat Search: 

ThreatExpert's Statistics for Win-Trojan/Starman.Gen [AhnLab]:

Win-Trojan/Starman.Gen [AhnLab] is also known as:
Threat AliasNumber of Incidents
W32/RAHack [McAfee]7,713
W32/Allaple-F [Sophos]7,652
WORM_ALLAPLE.IK [Trend Micro]7,614
Worm:Win32/Allaple.A [Microsoft]7,454
W32.Rahack.W [Symantec]6,665
Worm.Allaple.Gen [PC Tools]6,252
Net-Worm.Win32.Allaple.b [Kaspersky Lab]5,199
Net-Worm.Win32.Allaple.a [Ikarus]4,966
Net-Worm.Win32.Allaple.e [Kaspersky Lab]1,910
Net-Worm.Win32.Allaple.b [Ikarus]1,174
W32.Rahack.H [Symantec]972
Worm.Allaple.K [PC Tools]692
Net-Worm.Win32.Allaple.a [Kaspersky Lab]438
Net-Worm.Win32.Allaple [Ikarus]148
Virus.Win32.Virut.q [Ikarus]146
Win32.Virut.Gen.4 [PC Tools]142
WORM_ALLAPLE.PF [Trend Micro]104
Mal_Allaple [Trend Micro]81
Backdoor.Win32.Allaple.a [Kaspersky Lab]73
Troj/Allaple-A [Sophos]73
Virus.Win32.Cheburgen [Ikarus]72
Net-Worm.Win32.Allaple.e [Ikarus]46
Mal/Packer, Mal/Allaple-A [Sophos]34
Worm:Win32/Allaple.gen!dam [Microsoft]34
W32/Allaple-D [Sophos]31
Worm.Allaple.Gen!Pac.3 [PC Tools]31
Net-Worm.Win32.Allaple.d [Kaspersky Lab]17
Backdoor.Win32.Allaple [Ikarus]13
Worm:Win32/Allaple.L [Microsoft]6
Mal/Allaple-A, Mal/Packer [Sophos]5
Backdoor.Allaple.Gen.2 [PC Tools]4
Malware.Rahack [PC Tools]3
Backdoor.Win32.Rbot.bni [Kaspersky Lab]2
Suspicious.MH690 [Symantec]2
W32/Allaple-E [Sophos]2
Win32.Virut.Gen [PC Tools]2
Worm.Allaple.AA [PC Tools]2
Backdoor.Rbot [Ikarus]1
Backdoor:Win32/Agent [Microsoft]1
Worm.Rbot.MPO [PC Tools]1

Win-Trojan/Starman.Gen [AhnLab] is known to be created as:
%ProgramFiles%\common files\system\ado\taiftcvd.exe
%ProgramFiles%\common files\system\ado\tsektjkj.exe
%ProgramFiles%\netmeeting\raiwhdqm.exe
%ProgramFiles%\netmeeting\rsewzjqn.exe
%System%\urdvxc.exe
%Windir%\pchealth\helpctr\system\compatctr\dnxjdtvx.exe
%Windir%\pchealth\helpctr\system\compatctr\hguqrgzj.exe
%Windir%\pchealth\helpctr\system\compatctr\hrtbebze.exe
%Windir%\pchealth\helpctr\system\compatctr\jbnxjtkn.exe
%Windir%\pchealth\helpctr\system\compatctr\pmygoosv.exe
%Windir%\pchealth\helpctr\system\compatctr\srpzizhi.exe
%Windir%\pchealth\helpctr\system\compatctr\tnslrrhk.exe
%Windir%\pchealth\helpctr\system\compatctr\zlhqrlbx.exe
%Windir%\pchealth\helpctr\system\dvdupgrd\asortdip.exe
%Windir%\pchealth\helpctr\system\dvdupgrd\shrrtjet.exe
%Windir%\pchealth\helpctr\system\errmsg\lbljqref.exe
%Windir%\pchealth\helpctr\system\errmsg\vlvxqrek.exe
%Windir%\pchealth\helpctr\system\errors\ckccbqxq.exe
%Windir%\pchealth\helpctr\system\errors\jcjjlqnq.exe
%Windir%\pchealth\helpctr\system\netdiag\hsjqschn.exe
%Windir%\pchealth\helpctr\system\netdiag\jrljyhla.exe
%Windir%\pchealth\helpctr\system\netdiag\uydqyksx.exe
%Windir%\pchealth\helpctr\system\netdiag\xrvxszvs.exe
%Windir%\pchealth\helpctr\system\panels\mmtgyvwm.exe
%Windir%\pchealth\helpctr\system\panels\nntlskwn.exe
%Windir%\pchealth\helpctr\system\panels\sncncweb.exe
%Windir%\pchealth\helpctr\system\panels\yxkmkwez.exe
%Windir%\pchealth\helpctr\system\rc\qbrblthb.exe
%Windir%\pchealth\helpctr\system\rc\qnrnbtsz.exe
%Windir%\pchealth\helpctr\system\remote assistance\ohqytzqq.exe
%Windir%\pchealth\helpctr\system\remote assistance\oqjduzag.exe
%Windir%\pchealth\helpctr\system\remote assistance\rqxjhbsl.exe
%Windir%\pchealth\helpctr\system\remote assistance\rzqstbqq.exe
%Windir%\pchealth\helpctr\system\remote assistance\wesnhzec.exe
%Windir%\pchealth\helpctr\system\remote assistance\wiyxuhik.exe
%Windir%\pchealth\helpctr\system\sysinfo\bjlkjrls.exe
%Windir%\pchealth\helpctr\system\sysinfo\cntbrbzr.exe
%Windir%\pchealth\helpctr\system\sysinfo\drtqkaaj.exe
%Windir%\pchealth\helpctr\system\sysinfo\dzrunhth.exe
%Windir%\pchealth\helpctr\system\sysinfo\jbrhbztz.exe
%Windir%\pchealth\helpctr\system\sysinfo\jrtqcssx.exe
%Windir%\pchealth\helpctr\system\sysinfo\kmtzonhr.exe
%Windir%\pchealth\helpctr\system\sysinfo\lvkunzjs.exe
%Windir%\pchealth\helpctr\system\sysinfo\ndgvcrga.exe
%Windir%\pchealth\helpctr\system\sysinfo\oerkoxuu.exe
%Windir%\pchealth\helpctr\system\sysinfo\oxnrvogl.exe
%Windir%\pchealth\helpctr\system\sysinfo\rbcjjwqr.exe
%Windir%\pchealth\helpctr\system\sysinfo\rercrnhh.exe
%Windir%\pchealth\helpctr\system\sysinfo\rnbrkrlv.exe
%Windir%\pchealth\helpctr\system\sysinfo\rnkddwqo.exe
%Windir%\pchealth\helpctr\system\sysinfo\vkchbbxh.exe
%Windir%\pchealth\helpctr\system\updatectr\amqiycof.exe
%Windir%\pchealth\helpctr\system\updatectr\bwvgnlhi.exe
%Windir%\pchealth\helpctr\system\updatectr\lwklbvze.exe
%Windir%\pchealth\helpctr\system\updatectr\ornlkyzz.exe
%Windir%\pchealth\helpctr\system\updatectr\qjysvfqx.exe
%Windir%\pchealth\helpctr\system\updatectr\qxshkkqn.exe
%Windir%\pchealth\helpctr\system\updatectr\rrbvcsbb.exe
%Windir%\pchealth\helpctr\system\updatectr\snqesjrk.exe
%Windir%\pchealth\helpctr\system\updatectr\tovufcjh.exe
%Windir%\pchealth\helpctr\system\updatectr\trkhkjxz.exe
%Windir%\web\wcxnjhhj.exe
%Windir%\web\wkjxcusd.exe
c:\inetpub\wwwroot\fvlwzarw.exe
c:\inetpub\wwwroot\kkvwbsrw.exe
c:\tlyfmrae.exe
c:\tvsknrse.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.