Threat Search: 

ThreatExpert's Statistics for Mal/EncPk-CK [Sophos]:

Mal/EncPk-CK [Sophos] is also known as:
Threat AliasNumber of Incidents
TrojanDropper:Win32/Srizbi.gen!D [Microsoft]225
Backdoor.Win32.HacDef.073.B [Ikarus]137
Generic Dropper [McAfee]127
Trojan:Win32/Helpud.A [Microsoft]76
Virus.Win32.Virtualizer [Ikarus]68
PWS:Win32/OnLineGames.ZFE [Microsoft]62
Cryp_Xed-3 [Trend Micro]57
Backdoor.Win32.Oderoor [Ikarus]52
Trojan.Win32.Agent.airv [Kaspersky Lab]49
Trojan Horse [Symantec]48
Trojan:Win32/Helpud.AB [Microsoft]47
PWS:Win32/Lineage.gen!A [Microsoft]44
Backdoor.Spakrab [Symantec]42
Trojan-Dropper.Rkit.AZ [Ikarus]42
TrojanDownloader:Win32/Agent.BA [Microsoft]41
Generic BackDoor [McAfee]39
PWS-Mmorpg.gen [McAfee]35
Trojan.Srizbi [Symantec]34
Infostealer.Gampass [Symantec]33
Worm.Oderoor [PC Tools]33
Generic.dx [McAfee]23
Trojan-Dropper.Agent [Ikarus]23
Trojan.Agent!sd6 [PC Tools]22
Trojan.Dropper [Symantec]22
Trojan.Crypt [Ikarus]21
Trojan.Win32.Agent [Ikarus]19
Trojan:Win32/ServStart.A [Microsoft]19
W32.Popwin [Symantec]18
TrojanDropper:Win32/Frethog.I [Microsoft]17
Backdoor.Win32.Agent.qlv [Kaspersky Lab]16
Backdoor:Win32/Oderoor.D [Microsoft]16
Backdoor.Trojan [Symantec]15
Trojan.Farfli [Symantec]14
AntiVirusXP2008 [Symantec]12
Backdoor.Agent!sd6 [PC Tools]12
Gen.Trojan [Ikarus]12
Rootkit.Win32.Agent.ctm [Kaspersky Lab]12
TROJ_AGENT.AWMZ [Trend Micro]12
TROJ_AGENT.AYAK [Trend Micro]12
Trojan.Win32.Agent.acyj [Kaspersky Lab]12
Trojan-Dropper.Win32.Agent.wbz [Kaspersky Lab]12
Trojan-GameThief.Win32.OnLineGames.uuew [Kaspersky Lab]12
Infostealer.Vipect [Symantec]11
Suspicious.MH690 [Symantec]10
TROJ_AGENT.RGN [Trend Micro]10
Trojan.Srizbi [PC Tools]10
Trojan.Win32.Helpud [Ikarus]10
Backdoor:Win32/Oderoor.gen!D [Microsoft]9
Spam-Mailbot.f.gen [McAfee]9
Trojan.LdPinch [Ikarus]9
Trojan-GameThief.Win32.OnLineGames [Ikarus]9
Backdoor.Win32.Inject [Ikarus]8
Trojan-Dropper.Win32.Srizbi.D [Ikarus]8
Win-Trojan/OnlineGameHack.185408.H [AhnLab]8
Generic Downloader.x [McAfee]7
Srizbi [McAfee]7
Trojan.Srizbi.Dropper.1 [Ikarus]7
Trojan.Win32.Pakes [Ikarus]7
Win32.Worm.Winko [Ikarus]7
Generic.Trojan.Generic [Ikarus]6
PWS-Mmorpg!r [McAfee]6
Trojan.Win32.Pakes.cpf [Kaspersky Lab]6
Trojan:Win32/BHO [Microsoft]6
Trojan-GameThief.Win32.OnLineGames.vbxo [Kaspersky Lab]6
Trojan-GameThief.Win32.OnLineGames.vugj [Kaspersky Lab]6
Virus.Win32.Agent.UWD [Ikarus]6
Win-Trojan/OnlineGameHack.183360.L [AhnLab]6
Backdoor.Win32.Oderoor.D [Ikarus]5
PWS:Win32/Gamania.gen!B [Microsoft]5
PWS:Win32/Gamania.gen!D [Microsoft]5
Trojan.Srizbi!sd6 [PC Tools]5
Trojan.Srizbi.Dropper [Ikarus]5
Trojan:Win32/SystemHijack.gen!C [Microsoft]5
Trojan-Dropper.Agent!sd6 [PC Tools]5
Win-Trojan/Xema.variant [AhnLab]5
Generic Dropper!hv.n [McAfee]4
Generic PWS.y [McAfee]4
Generic.dx!lxk [McAfee]4
PWS:Win32/Ldpinch.BN [Microsoft]4
PWS-OnlineGames.cw [McAfee]4
TROJ_DROPPER.EYF [Trend Micro]4
TROJ_DROPPER.GXU [Trend Micro]4
TROJ_SRIZBI.AP [Trend Micro]4
TROJ_SRIZBI.UJ [Trend Micro]4
Trojan.Generic [PC Tools]4
Trojan.Rincux [Ikarus]4
Trojan.Win32.Agent.aetu [Kaspersky Lab]4
Trojan.Win32.BHO.lft [Kaspersky Lab]4
Trojan.Win32.Scar.arly [Kaspersky Lab]4
Trojan.Win32.Scar.bdhl [Kaspersky Lab]4
Trojan.Win32.Srizbi.ay [Kaspersky Lab]4
Trojan:Win32/Agent.GA [Microsoft]4
Trojan-Dropper.Win32.Agent.awwv [Kaspersky Lab]4
Trojan-Dropper.Win32.Agent.uax [Kaspersky Lab]4
Trojan-Dropper.Win32.Agent.vsl [Kaspersky Lab]4
TrojanDropper:Win32/Srizbi.gen!F [Microsoft]4
Trojan-GameThief.Win32.OnLineGames.uqyc [Kaspersky Lab]4
Trojan-GameThief.Win32.OnLineGames.usei [Kaspersky Lab]4
Trojan-GameThief.Win32.OnLineGames.uuje [Kaspersky Lab]4
Virus:Win32/Viking.ND [Microsoft]4

Mal/EncPk-CK [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China248
Russian Federation8
Austria2
Spain1
Switzerland1

Mal/EncPk-CK [Sophos] is known to be created as:
%FontsDir%\33a76000.exe
%FontsDir%\360eaec0.exe
%ProgramFiles%\invmp.exe
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\pasvmp.exe
%System%\aaaaa.exe
%System%\alo.exe
%System%\axqf4m7dxq\d001.exe
%System%\bifrost\server.exe
%System%\bori.exe
%System%\ckie.exe
%System%\dllcache\x010.exe
%System%\dpmg.exe
%System%\drivers\windf.exe
%System%\emdmgmt.dll
%System%\eosec.exe
%System%\fzuk.exe
%System%\gassoocyw.exe
%System%\gtotop.exe
%System%\guvoomoubu.exe
%System%\helpme.exe
%System%\hepoosou.exe
%System%\iogq.exe
%System%\iowat.exe
%System%\jouhymmouhoul.exe
%System%\keym.exe
%System%\kwgks.exe
%System%\kyou.exe
%System%\mavounnoor.exe
%System%\myrer.exe
%System%\noki.exe
%System%\oyou.exe
%System%\pdsw.exe
%System%\popger.exe
%System%\pxie.exe
%System%\quenoottekik.exe
%System%\scvhost.exe
%System%\souwoutounor.exe
%System%\sysutils.exe
%System%\tesit.exe
%System%\trym.exe
%System%\twex.exe
%System%\vbgq.exe
%System%\wavi.exe
%System%\wdvwy.exe
%System%\wgks.exe
%System%\winhelp32.exe
%System%\winhelpbncba32.exe
%System%\winlogo.exe
%System%\winlogon86.exe
%System%\winupdate86.exe
%System%\wmiwy.exe
%System%\wucamyz.exe
%System%\wulin.exe
%System%\yqsw.exe
%System%\zudouv.exe
%Temp%\090603-2-2.exe
%Temp%\090615-1-1.exe
%Temp%\090615-1-2.exe
%Temp%\10006.exe
%Temp%\2004.exe
%Temp%\explor.exe
%Temp%\frame1_13_295.exe
%Temp%\frame1_28_300.exe
%Temp%\frame1_31_302.exe
%Temp%\frame1_32_302.exe
%Temp%\heisanhuo.exe
%Temp%\ilifpohe.exe
%Temp%\inst1_294.exe
%Temp%\inst2_293.exe
%Temp%\inst2_294.exe
%Temp%\inst2_297.exe
%Temp%\kalayh12.exe
%Temp%\msn.exe
%Temp%\newexe4_294.exe
%Temp%\rarsfx0\mmmmm.exe
%Temp%\rarsfx0\nnnnn.exe
%Temp%\rarsfx0\serverm.exe
%Temp%\rarsfx0\servern.exe
%Temp%\temp1.exe
%Temp%\temp2.exe
%Temp%\temp3.exe
%Temp%\temp4.exe
%Temp%\temp5.exe
%Temp%\trojan\trojan.exe
%Temp%\winmgmt.exe
%Temp%\wmdjz.exe
%Temp%\wscript.exe
%Windir%\aaaujzbr.exe
%Windir%\aahasnsq.exe
%Windir%\aaupcjrj.exe
%Windir%\abacupvn.exe
%Windir%\aczjaczj.exe
%Windir%\agrldmrg.exe
%Windir%\akqhofmi.exe
%Windir%\arjjjkbr.exe
%Windir%\bjazbkbz.exe
%Windir%\bngqchlq.exe
%Windir%\canxjqja.exe
%Windir%\chjikjrk.exe
Notes:
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.