Threat Search: 

ThreatExpert's Statistics for Mal/EncPk-C [Sophos]:

Mal/EncPk-C [Sophos] is also known as:
Threat AliasNumber of Incidents
W32.Pagipef.B [Symantec]86
TROJ_PAGIPEF.R [Trend Micro]85
Infostealer.Gampass [Symantec]53
Trojan Horse [Symantec]51
Virus.Win32.Small.p [Kaspersky Lab]45
Trojan-GameThief.Win32.OnLineGames.bkzg [Kaspersky Lab]41
Trojan-GameThief.Win32.OnLineGames [Ikarus]40
Generic.dx [McAfee]38
Packed/FSG [PC Tools]35
Trojan.VB!sd6 [PC Tools]35
Virus.Win32.Xorer.bh [Kaspersky Lab]26
Trojan.Win32.VB [Ikarus]25
Backdoor.Win32.VB [Ikarus]23
Infostealer.Onlinegame [Symantec]20
Trojan.Win32.KillAV.aut [Kaspersky Lab]16
Trojan.Win32.VB.avf [Kaspersky Lab]15
Generic BackDoor [McAfee]14
Hacktool [Symantec]13
Backdoor.Win32.VB.hxa [Kaspersky Lab]12
Win-Trojan/Agent.47717.B [AhnLab]12
Suspicious.MH690 [Symantec]11
not-a-virus:AdWare.Win32.BHO [Ikarus]10
not-a-virus:AdWare.Win32.BHO.cd [Kaspersky Lab]10
Backdoor.Win32.Hupigon [Ikarus]9
Generic PUP.x [McAfee]9
Trojan-Downloader.Win32.Banload [Ikarus]7
not-a-virus:PSWTool.Win32.MailPassView.130 [Kaspersky Lab]6
Trojan.Win32.Agent.bumi [Kaspersky Lab]6
Trojan.Win32.KillAV [Ikarus]5
Trojan-Spy.Agent [Ikarus]5
Trojan-Spy.Gampass!sd6 [PC Tools]5
Win-Trojan/OnlineGameHack.15301.C [AhnLab]5
Cryp_PESpin [Trend Micro]4
Trojan.Win32.Agent.bwko [Kaspersky Lab]4
Trojan.Win32.Agent2.drp [Kaspersky Lab]4
Trojan.Win32.VB.syr [Kaspersky Lab]4
Trojan.Win32.VB.txa [Kaspersky Lab]4
Trojan-PWS.OnlineGames.AHRG [PC Tools]4
Win-Trojan/Agent.43985 [AhnLab]4
Backdoor.Win32.VB.hpj [Kaspersky Lab]3
Generic PWS.y [McAfee]3
New Malware.aj [McAfee]3
not-a-virus:AdWare.Win32.Simbar.b [Ikarus]3
not-a-virus:PSWTool.Win32.MailPassView.130 [Ikarus]3
Packer.PESpin [Ikarus]3
Tool.MailPassView.A [PC Tools]3
Trojan.OnlineGames.Gen.85 [PC Tools]3
Trojan.Win32.Agent2.dvm [Kaspersky Lab]3
Trojan-Dropper.Win32.Agent.biri [Kaspersky Lab]3
Trojan-Dropper.Win32.Agent.ynm [Kaspersky Lab]3
Win-Trojan/Xema.variant [AhnLab]3
Adware.BHO!sd6 [PC Tools]2
Backdoor.Win32.Bifrose.bzyr [Kaspersky Lab]2
Backdoor.Win32.VB.hqr [Kaspersky Lab]2
Backdoor.Win32.VB.hxo [Kaspersky Lab]2
BehavesLike [Ikarus]2
Downloader [Symantec]2
Generic.dx!bdj [McAfee]2
Generic.dx!cju [McAfee]2
HackTool.Win32.PHPWind [Ikarus]2
PWS-Mmorpg.gen [McAfee]2
Trojan.Win32.Agent2.kd [Kaspersky Lab]2
Backdoor.Graybird [PC Tools]1
Backdoor.Graybird [Symantec]1
Backdoor.Sdbot!sd6 [PC Tools]1
Backdoor.Win32.Ceckno [Ikarus]1
Backdoor.Win32.VB.hhj [Kaspersky Lab]1
Constructor.Win32.Binder.ak [Kaspersky Lab]1
Constructor.Win32.Iciko.a [Kaspersky Lab]1
Constructor/Iciko.76223 [AhnLab]1
Email-Worm.Win32.Charch [Ikarus]1
Gen.Trojan [Ikarus]1
Generic Downloader.x [McAfee]1
Generic Dropper [McAfee]1
Generic.cc [McAfee]1
Generic.dx!hiu [McAfee]1
Infostealer [Symantec]1
Infostealer.Lemir.Gen [Symantec]1
Mal_MLWR-5 [Trend Micro]1
Net-Worm.Win32.Maslan.A [Ikarus]1
New Malware.hr [McAfee]1
New Malware.u [McAfee]1
New Malware.w [McAfee]1
Packed.Win32.Klone.af [Ikarus]1
Packed.Win32.Klone.ao [Ikarus]1
Packed.Win32.NSAnti.b [Kaspersky Lab]1
PWS:Win32/Prast!rts [Microsoft]1
Suspicious.Graybird.1 [Symantec]1
Trojan.Generic [Ikarus]1
Trojan.Generic [PC Tools]1
Trojan.OnlineGames.Gen.81 [PC Tools]1
Trojan.Packed.NsAnti [Symantec]1
Trojan.Startpage [Symantec]1
Trojan.Win32.Agent2.cfy [Kaspersky Lab]1
Trojan.Win32.Agent2.kwm [Kaspersky Lab]1
Trojan.Win32.Dogrobot [Ikarus]1
Trojan.Win32.Genome [Ikarus]1
Trojan.Win32.Genome.jpa [Kaspersky Lab]1
Trojan.Win32.KillAV.avc [Kaspersky Lab]1
Trojan:Win32/Bumat!rts [Microsoft]1

Mal/EncPk-C [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China165
France7
Russian Federation6
Taiwan6
Israel5
United Kingdom2
Poland1

Mal/EncPk-C [Sophos] is known to be created as:
%ProgramFiles%\common files\system\q28.exe
%ProgramFiles%\ultravpn\uninstall.exe
%System%\2003006557\avgupdt.exe
%System%\2003006557\lsass.exe
%System%\com\smss.exe
%System%\j888.exe
%System%\msdlc.exe
%System%\ravmond.exe
%System%\sovhist.exe
%System%\spoolsr.exe
%System%\svchest.exe
%System%\winlegon.exe
%Temp%\2\090312-2-9.exe
%Temp%\22535959.exe
%Temp%\24504650.exe
%Temp%\24954625.exe
%Temp%\6\090312-6-8.exe
%Temp%\dialupass.exe
%Temp%\kafan virlist 20090714\090714-2-8.exe
%Windir%\hefcndy.exe
%Windir%\lsasser.exe
%Windir%\msagente\txplatform.exe
%Windir%\svchos.exe
%Windir%\system\myrundll32.exe
%Windir%\system\outlok.exe
%Windir%\system\svchost.exe
%Windir%\system\sypriam.exe
%Windir%\tciocp64.exe
%Windir%\ticisms.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.