Threat Search: 

ThreatExpert's Statistics for Win32.Parite.B2 [PC Tools]:

Win32.Parite.B2 [PC Tools] is also known as:
Threat AliasNumber of Incidents
PE_PARITE.A [Trend Micro]649
W32.Pinfi [Symantec]642
Virus.Win32.Parite.b [Kaspersky Lab]623
W32/Pate.b [McAfee]610
W32/Parite-B [Sophos]584
Win32/Parite [AhnLab]553
Virus:Win32/Parite.B [Microsoft]536
Virus.Win32.Parite [Ikarus]68
Virus.Win32.Parite.B [Ikarus]12
Generic.Onlinegames [Ikarus]4
Trojan.Win32.Midgare [Ikarus]4
Backdoor.Win32.Bifrose [Ikarus]3
Backdoor.Bifrose [Symantec]2
Backdoor.Prorat [Symantec]1
Backdoor.Rbot [Ikarus]1
Backdoor.Win32.Beastdoor [Ikarus]1
Backdoor.Win32.GrayBird.EJ [Ikarus]1
Backdoor.Win32.Jaan.w [Kaspersky Lab]1
Backdoor.Win32.Prorat.dz [Kaspersky Lab]1
Backdoor:Win32/Prorat.K [Microsoft]1
Constructor.Win32.Bifrose [Ikarus]1
Email-Worm.Win32.Brontok.q [Kaspersky Lab]1
Infostealer.Gamania [Symantec]1
Mal_Banker [Trend Micro]1
PE_LOOKED.XV [Trend Micro]1
PE_TRATS.A [Trend Micro]1
Possible_Mlwr-7 [Trend Micro]1
TROJ_NSPAK.A [Trend Micro]1
Trojan Horse [Symantec]1
Trojan.Dropper [Symantec]1
Trojan-Dropper.Delf [Ikarus]1
Trojan-Dropper.Win32.Agent.dgo [Kaspersky Lab]1
Trojan-Dropper.Win32.Delf.xo [Kaspersky Lab]1
Trojan-Dropper.Win32.Delfdru [Ikarus]1
Trojan-Dropper.Win32.VB.FI [Ikarus]1
TrojanDropper:Win32/Swisyn.A [Microsoft]1
Trojan-GameThief.Win32.Lmir.ayr [Kaspersky Lab]1
Trojan-Spy.Win32.Banker.cow [Ikarus]1
VirTool.Win32.DelfInject [Ikarus]1
VirTool.Win32.Injector [Ikarus]1
VirTool:Win32/Injector.gen!W [Microsoft]1
Virus.Win32.Bifrose [Ikarus]1
Virus.Win32.Hupigon.AMD [Ikarus]1
Virus.Win32.Sality [Ikarus]1
Virus.Worm.Win32.AutoRun.dht [Ikarus]1
W32.HLLP.Sality.O [Symantec]1
W32.Ircbrute [Symantec]1
W32.Looked.P [Symantec]1
W32.Renama.A@mm [Symantec]1
W32.Rontokbro@mm [Symantec]1
W32.SillyFDC [Symantec]1
W32.Spybot.Worm [Symantec]1
W32/HLLP.Philis.az [McAfee]1
W32/Pate.dam [McAfee]1
W32/Rontokbro.gen@MM [McAfee]1
W32/Trats [McAfee]1
Worm.Win32.Pushbot [Ikarus]1
Worm:Win32/Wootbot.DX [Microsoft]1
WORM_RONTKBR.GEN [Trend Micro]1

Win32.Parite.B2 [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation26
China14
Sweden5
United Kingdom5
Australia3
Brazil3
France2
Germany2
Portugal2
Czech Republic1
Egypt1
Spain1
Turkey1

Win32.Parite.B2 [PC Tools] is known to be created as:
%AppData%\br6657on.exe
%AppData%\csrss.exe
%AppData%\inetinfo.exe
%AppData%\lsass.exe
%AppData%\microsoft\helpctr\helpctr.exe
%AppData%\microsoft\windows media\9.0\9.0.exe
%AppData%\microsoft\windows\themes\themes.exe
%AppData%\microsoft\windows\windows.exe
%AppData%\services.exe
%AppData%\smss.exe
%AppData%\svchost.exe
%AppData%\winlogon.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18\s-1-5-18.exe
%CommonAppData%\microsoft\network\connections\pbk\pbk.exe
%CommonDocuments%\documents.exe
%CommonPrograms%\accessories\accessibility.exe
%CommonPrograms%\accessories\accessibility\accessibility.exe
%CommonPrograms%\accessories\communications.exe
%CommonPrograms%\accessories\communications\communications.exe
%CommonPrograms%\accessories\entertainment.exe
%CommonPrograms%\accessories\entertainment\entertainment.exe
%CommonPrograms%\startup.exe
%CommonPrograms%\startup\autorun.exe
%CommonPrograms%\startup\msconfig.exe
%CommonPrograms%\startup\startup.exe
%CommonPrograms%\startup\windowsupdate.scr
%CommonStartMenu%\startup.exe
%Favorites%\favorites.exe
%Favorites%\links.exe
%Favorites%\links\links.exe
%InternetCache%\oluzkh27.exe
%LocalSettings%\history\history.exe
%LocalSettings%\manifests.exe
%LocalSettings%\mshist012008070720080708.exe
%Profiles%\default user\cookies\cookies.exe
%Profiles%\default user\local settings\9.0.exe
%Profiles%\default user\local settings\history\history.exe
%Profiles%\default user\nethood.exe
%Profiles%\default user\sendto\sendto.exe
%Profiles%\default user\start menu\programs\entertainment.exe
%Profiles%\default user\start menu\programs\startup.exe
%Profiles%\default user\start menu\programs\startup\startup.exe
%Profiles%\default user\start menu\startup.exe
%Profiles%\default user\templates\templates.exe
%ProgramFiles%\_rejoice2009.exe
%ProgramFiles%\7-zip\7z.exe
%ProgramFiles%\7-zip\7zg.exe
%ProgramFiles%\adstechnology\adstechnology.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\common files\designer\designer.exe
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\msn\msncorefiles\pisynctw.exe
%Programs%\accessories\accessibility.exe
%Programs%\accessories\accessibility\accessibility.exe
%Programs%\accessories\entertainment.exe
%Programs%\accessories\entertainment\entertainment.exe
%Programs%\entertainment.exe
%Programs%\startup.exe
%Programs%\startup\findfast.exe
%Programs%\startup\startup.exe
%StartMenu%\startup.exe
%System%\3fabe9c0.exe
%System%\amvo.exe
%System%\avpo.exe
%System%\bifrost\server.exe
%System%\cmd-bro-rmx.exe
%System%\dxblcq.exe
%System%\fservice.exe
%System%\kxvo.exe
%System%\lnaccess.exe
%System%\msnnmaneger.exe
%System%\printer.exe
%System%\reader_s.exe
%System%\regsvr.exe
%System%\spoolvs.exe
%System%\winhelp.exe
%System%\wuamgrd.exe
%Temp%\000035ea.exe
%Temp%\hackpass.exe
%Temp%\help.exe
%Temp%\rarsfx0\ctreboot.exe
%Temp%\temp.exe
%Temp%\web.exe
%Templates%\11496-nendangbro.com
%Templates%\templates.exe
%UserProfile%\nethood.exe
%UserProfile%\reader_s.exe
%UserProfile%\sendto\sendto.exe
%Windir%\124327l.exe
%Windir%\config\csrss.exe
%Windir%\lsass.exe
%Windir%\regsvr.exe
%Windir%\sembako-dfzjmrh.exe
%Windir%\services.exe
%Windir%\shell.exe
%Windir%\shellnew\bbm-ztmmrhfd.exe
%Windir%\sv2.exe
%Windir%\svchust.exe
%Windir%\system\lsass.exe
%Windir%\system\sservice.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonDocuments% is a variable that refers to the file system directory that contains documents that are common to all users. A typical paths is C:\Documents and Settings\All Users\Documents.
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %CommonStartMenu% is a variable that refers to the file system directory that contains the programs and folders that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu (Windows NT/2000/XP).
  • %Favorites% is a variable that refers to the file system directory that serves as a common repository for the user's favorite items. A typical path is C:\Documents and Settings\[UserName]\Favorites.
  • %InternetCache% is a variable that refers to the file system directory that serves as a common repository for temporary Internet files. A typical path is C:\Documents and Settings\[UserName]\Local Settings\Temporary Internet Files.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %StartMenu% is a variable that refers to the file system directory containing Start menu items. A typical path is C:\Documents and Settings\[UserName]\Start Menu.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Templates% is a variable that refers to the file system directory that serves as a common repository for document templates. A typical path is C:\Documents and Settings\[UserName]\Templates.
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.