Lavasoft Malware Labs Blog
Malware Encyclopedia
Gen:Trojan.Heur.3mKff9aQ0YiO (BitDefender), Trojan.Win32.Generic!BT (VIPRE), Trojan.DownLoader25.4231 (DrWeb), Gen:Trojan.Heur.3mKff9aQ0YiO (B) (Emsisoft), Artemis!C4B52FC582F1 (McAfee), Trojan.Gen.2 (Symantec), Gen:Trojan.Heur.3mKff9aQ0YiO (FSecure), Win32:Malware-gen (AVG), Win32:Malware-gen (Avast), Gen:Trojan.Heur.3mKff9aQ0YiO (AdAware), GenericInjector.YR (Lavasoft MAS)
Behaviour: Trojan, Malware
Gen:Variant.FAkeAlert.105 (BitDefender), Trojan:Win32/Skeeyah.A!rfn (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Generic!BT (VIPRE), Trojan.KeyLogger.38249 (DrWeb), Gen:Variant.FAkeAlert.105 (B) (Emsisoft), PUP-XBS-RC (McAfee), SMG.Heur!gen (Symantec), PUA.Keylogger.Ardamax (Ikarus), Gen:Variant.FAkeAlert.105 (FSecure), Win32:Malware-gen (AVG), Win32:Malware-gen (Avast), TROJ_GEN.R03EC0CG317 (TrendMicro), Gen:Variant.FAkeAlert.105 (AdAware), SpyTool.Win32.Ardamax.FD, GenericEmailWorm.YR (Lavasoft MAS)
Behaviour: Keylogger, Trojan, Worm, EmailWorm, PUP, SpyTool, Malware
Trojan.GenericKD.5272065 (BitDefender), Backdoor:MSIL/Bladabindi!rfn (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.DownLoader11.18111 (DrWeb), Trojan.GenericKD.5272065 (B) (Emsisoft), Trojan.MSIL.Injector (Ikarus), Trojan.GenericKD.5272065 (FSecure), AutoIt:Injector-DF [Trj] (AVG), AutoIt:Injector-DF [Trj] (Avast), Trojan.Win32.Swrort.3.FD, GenericInjector.YR (Lavasoft MAS)
Behaviour: Trojan, Backdoor
Gen:Variant.Kazy.62618 (BitDefender), PWS:Win32/Zbot (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Generic.pak!cobra (VIPRE), Trojan.SMSSend.2363 (DrWeb), Gen:Variant.Kazy.62618 (B) (Emsisoft), PWS-Zbot.gen.ael (McAfee), Packed.Generic.382 (Symantec), Trojan-Spy.Win32.Zbot (Ikarus), Gen:Variant.Kazy.62618 (FSecure), Win32:Susn-AU [Trj] (AVG), Win32:Susn-AU [Trj] (Avast), TSPY_ZBOT.SMAR (TrendMicro), Gen:Variant.Kazy.62618 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR, BankerGeneric.YR (Lavasoft MAS)
Behaviour: Trojan-Spy, Trojan-PSW, Banker, Trojan, Backdoor, Packed
PWS:Win32/Zbot (Microsoft), HEUR:Hoax.Win32.ArchSMS.gen (Kaspersky), Trojan.Win32.Kanots.a (v) (VIPRE), Trojan.SMSSend.2363 (DrWeb), PWS-Zbot.gen.ro (McAfee), Packed.Generic.382 (Symantec), Trojan-Spy.Win32.Zbot (Ikarus), Win32:Susn-AU [Trj] (AVG), Win32:Susn-AU [Trj] (Avast), TSPY_ZBOT.SMQG (TrendMicro), Gen:Variant.Barys.620 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR, BankerGeneric.YR (Lavasoft MAS)
Behaviour: Trojan-Spy, Trojan-PSW, Banker, Trojan, Backdoor, Packed
Gen:Variant.Kazy.54078 (BitDefender), PWS:Win32/Zbot (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Generic!BT (VIPRE), Trojan.PWS.Panda.368 (DrWeb), Gen:Variant.Kazy.54078 (B) (Emsisoft), Generic Downloader.md (McAfee), Infostealer.Banker.C (Symantec), Trojan-PWS.Win32.Zbot (Ikarus), Gen:Variant.Kazy.54078 (FSecure), Win32:Dropper-JWQ [Drp] (AVG), Win32:Dropper-JWQ [Drp] (Avast), TSPY_ZBOT.SMQG (TrendMicro), Gen:Variant.Kazy.54078 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR (Lavasoft MAS)
Behaviour: Trojan-PSW, Banker, Trojan, Backdoor
Gen:Variant.Kazy.77730 (BitDefender), PWS:Win32/Zbot (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Generic.pak!cobra (VIPRE), Trojan.SMSSend.2363 (DrWeb), Gen:Variant.Kazy.77730 (B) (Emsisoft), PWS-Zbot.gen.ael (McAfee), Packed.Generic.382 (Symantec), Trojan-Spy.Win32.Zbot (Ikarus), Gen:Variant.Kazy.77730 (FSecure), Win32:Susn-AU [Trj] (AVG), Win32:Susn-AU [Trj] (Avast), TSPY_ZBOT.SMAR (TrendMicro), Gen:Variant.Kazy.77730 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR, BankerGeneric.YR (Lavasoft MAS)
Behaviour: Trojan-Spy, Trojan-PSW, Banker, Trojan, Backdoor, Packed
Gen:Variant.Kazy.67193 (BitDefender), PWS:Win32/Zbot (Microsoft), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Kanots.a (v) (VIPRE), Trojan.SMSSend.2363 (DrWeb), Gen:Variant.Kazy.67193 (B) (Emsisoft), PWS-Zbot.gen.yx (McAfee), Packed.Generic.382 (Symantec), Trojan-Spy.Win32.Zbot (Ikarus), Win32:Susn-AU [Trj] (AVG), Win32:Susn-AU [Trj] (Avast), TSPY_ZBOT.SMQG (TrendMicro), Gen:Variant.Kazy.67193 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR, BankerGeneric.YR (Lavasoft MAS)
Behaviour: Trojan-Spy, Trojan-PSW, Banker, Trojan, Backdoor, Packed
not-a-virus:HEUR:Downloader.Win32.MediaGet.gen (Kaspersky), Program.MediaGet.142 (DrWeb), Application.MGet (A) (Emsisoft), Trojan.Win32.Sasfis.FD, PUPMediaGet.YR (Lavasoft MAS)
Behaviour: Trojan, PUP
Gen:Variant.Kazy.699500 (BitDefender), HEUR:Trojan.Win32.Generic (Kaspersky), Trojan.Win32.Generic!BT (VIPRE), Trojan.PWS.Panda.2401 (DrWeb), Gen:Variant.Kazy.699500 (B) (Emsisoft), Artemis!BB6C8540565E (McAfee), Trojan.Gen.2 (Symantec), Trojan.MSIL.Injector (Ikarus), Gen:Variant.Kazy.699500 (FSecure), MSIL8.BKNX (AVG), MSIL:Agent-DCH [Trj] (Avast), TSPY_FAREIT.YYSLJ (TrendMicro), Gen:Variant.Kazy.699500 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, Sinowal.YR, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR (Lavasoft MAS)
Behaviour: Trojan-PSW, Trojan, Backdoor
Trojan.Ranapama.JH (BitDefender), Virus:Win32/Ramnit.A (Microsoft), Virus.Win32.Nimnul.a (Kaspersky), Virus.Win32.Ramnit.a (v) (VIPRE), DDoS.MP.5 (DrWeb), Trojan.Ranapama.JH (B) (Emsisoft), W32/Ramnit.a (McAfee), W32.Ramnit!inf (Symantec), Trojan-Dropper.Win32.Kabwak (Ikarus), Trojan.Ranapama.JH (FSecure), Win32:RmnDrp (AVG), Win32:RmnDrp (Avast), PE_RAMNIT.H (TrendMicro), Trojan.Ranapama.JH (AdAware), Trojan.Win32.Ceatrg.FD, GenericInjector.YR, TrojanDropperPolymorph1.YR (Lavasoft MAS)
Behaviour: Trojan-Dropper, Trojan, Virus
Trojan-PSW.Win32.Fareit.buio (Kaspersky), Trojan.Win32.Generic!BT (VIPRE), Gen:Variant.Zusy.154391 (B) (Emsisoft), Trojan.MSIL.Injector (Ikarus), Gen:Variant.Zusy.154391 (FSecure), Gen:Variant.Zusy.154391 (AdAware), Trojan-PSW.Win32.Zbot.6.FD, Sinowal.YR, GenericInjector.YR, BackdoorCaphaw_QKKBAL.YR, TrojanPSWZbot.YR (Lavasoft MAS)
Behaviour: Trojan-PSW, Trojan, Backdoor