Threat Search: 

ThreatExpert's Statistics for Mal/CryptBox-A [Sophos]:

Mal/CryptBox-A [Sophos] is also known as:
Threat AliasNumber of Incidents
Malware.Ackantta [PC Tools]13
W32.Ackantta!gen [Symantec]13
Worm:Win32/Prolaco.gen!C [Microsoft]13
W32/Xirtem@MM [McAfee]12
Trojan.Win32.Buzus [Ikarus]10
Worm:Win32/Prolaco.gen!E [Microsoft]10
Email-Worm.Ackantta [PC Tools]9
VirTool:Win32/DelfInject.gen!L [Microsoft]9
Worm.Win32.AutoRun [Ikarus]9
Worm:Win32/Hamweq.A [Microsoft]9
Generic Dropper.ea [McAfee]8
Win-Trojan/Renos.17920 [AhnLab]8
Worm.Win32.AutoRun.evy [Kaspersky Lab]8
Generic.dx [McAfee]6
VirTool:Win32/CeeInject.gen!J [Microsoft]6
Backdoor.Trojan [Symantec]5
W32.Ackantta@mm [Symantec]5
Worm:Win32/Prolaco.gen!A [Microsoft]5
Backdoor.Hupigon [PC Tools]4
Trojan Horse [Symantec]4
Trojan.Generic [PC Tools]4
Trojan.Win32.Buzus.dbie [Kaspersky Lab]4
Trojan.Win32.Buzus.dboe [Kaspersky Lab]4
W32.Ackantta.B@mm [Symantec]4
W32.Ackantta.G@mm [Symantec]4
W32.SillyFDC [Symantec]4
Win32/Prolaco.worm.202240.B [AhnLab]4
Win32/Prolaco.worm.239104 [AhnLab]4
Worm.Win32.AutoRun.uhr [Kaspersky Lab]4
Worm:Win32/Prolaco.gen!B [Microsoft]4
Generic Dropper.i [McAfee]3
Packed.Win32.Tdss.c [Kaspersky Lab]3
Email-Worm.Win32.NetSky [Ikarus]2
Malware.SillyP2P [PC Tools]2
Rootkit.TDSS!sd6 [PC Tools]2
Trojan.Win32.Buzus.afqp [Kaspersky Lab]2
Trojan.Win32.Buzus.czvp [Kaspersky Lab]2
Trojan.Win32.Buzus.czxx [Kaspersky Lab]2
Trojan.Win32.Buzus.dder [Kaspersky Lab]2
Trojan.Zbot [PC Tools]2
Trojan.Zbot [Symantec]2
Trojan-Dropper.Agent [Ikarus]2
Trojan-Dropper.Win32.Agent.aefe [Kaspersky Lab]2
Trojan-Spy.Banker.GEN [PC Tools]2
VirTool.Win32.CeeInject [Ikarus]2
VirTool.Win32.DelfInject [Ikarus]2
W32.IRCBot [Symantec]2
W32.Mytob@mm [Symantec]2
W32.Netsky.gen@mm [Symantec]2
W32.SillyP2P [Symantec]2
Win-Trojan/Buzus.201728.O [AhnLab]2
Win-Trojan/Buzus.70656.K [AhnLab]2
Worm.Win32.Prolaco [Ikarus]2
Backdoor.Win32.Hupigon [Ikarus]1
Backdoor.Win32.Hupigon.fhzn [Kaspersky Lab]1
Backdoor:Win32/Poison.M [Microsoft]1
BackDoor-DOQ [McAfee]1
Downloader.MisleadApp [Symantec]1
Dropper/Agent.349696.B [AhnLab]1
Email-Worm.Win32.Agent.kf [Kaspersky Lab]1
Email-Worm.Win32.NetSky.iq [Kaspersky Lab]1
Generic BackDoor.s [McAfee]1
Generic Downloader.z [McAfee]1
Generic Dropper [McAfee]1
Generic.dx!egm [McAfee]1
Generic.dx!hca [McAfee]1
Generic.dx!hee [McAfee]1
Generic.dx!lod [McAfee]1
Generic.dx!nai [McAfee]1
Generic.dx!ve [McAfee]1
Hacktool.Spammer [Symantec]1
Infostealer [Symantec]1
P2P-Worm.Win32.Agent [Ikarus]1
P2P-Worm.Win32.Agent.ji [Kaspersky Lab]1
Packed.Win32.Tdss [Ikarus]1
PWS-Banker [McAfee]1
Trojan.Buzus!sd6 [PC Tools]1
Trojan.IRCBot [PC Tools]1
Trojan.Win32.Agent.ayfa [Kaspersky Lab]1
Trojan.Win32.Buzus.agqf [Kaspersky Lab]1
Trojan.Win32.Buzus.alvw [Kaspersky Lab]1
Trojan.Win32.Buzus.amcl [Kaspersky Lab]1
Trojan.Win32.Buzus.amkf [Kaspersky Lab]1
Trojan.Win32.Buzus.anmr [Kaspersky Lab]1
Trojan.Win32.Buzus.bmly [Kaspersky Lab]1
Trojan.Win32.Buzus.bwev [Kaspersky Lab]1
Trojan.Win32.Buzus.bwgv [Kaspersky Lab]1
Trojan.Win32.Buzus.cgqa [Kaspersky Lab]1
Trojan.Win32.Buzus.cgys [Kaspersky Lab]1
Trojan.Win32.Buzus.cpav [Kaspersky Lab]1
Trojan.Win32.Buzus.cpbr [Kaspersky Lab]1
Trojan.Win32.Buzus.cpcu [Kaspersky Lab]1
Trojan.Win32.Buzus.cxlo [Kaspersky Lab]1
Trojan.Win32.Buzus.czth [Kaspersky Lab]1
Trojan.Win32.Buzus.dbfm [Kaspersky Lab]1
Trojan.Win32.Buzus.dccy [Kaspersky Lab]1
Trojan.Win32.KillAV [Ikarus]1
Trojan-Dropper.Agent [PC Tools]1
Trojan-PSW.Generic [PC Tools]1
VirTool:Win32/DelfInject.gen!AG [Microsoft]1

Mal/CryptBox-A [Sophos] is known to be created as:
%AppData%\systemproc\lsass.exe
%System%\gnote.exe
%System%\googleupdate.exe
%System%\googleupdater.exe
%System%\googleupdates.exe
%System%\googleupdte.exe
%System%\ipx.exe
%System%\javacon.exe
%System%\javame.exe
%System%\javap3.exe
%System%\javare.exe
%System%\javarun.exe
%System%\javaw.exe
%System%\javawm.exe
%System%\javawt.exe
%System%\javawu.exe
%System%\javaz.exe
%System%\jhm.exe
%System%\jhshed.exe
%System%\jmx.exe
%System%\jrsched.exe
%System%\jrshed.exe
%System%\jushed.exe
%System%\jvmi.exe
%System%\mf.exe
%System%\nscc32.exe
%System%\nvis32.exe
%System%\nvs32.exe
%System%\sdra64.exe
%System%\stacsv.exe
%System%\vmchlp.exe
%System%\vmcthlp.exe
%System%\widll.exe
%System%\wmimngr.exe
%System%\wpmgr.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).