Threat Search: 

ThreatExpert's Statistics for Mal/EncPk-CZ [Sophos]:

Mal/EncPk-CZ [Sophos] is also known as:
Threat AliasNumber of Incidents
Application.BluSOD [PC Tools]11,886
Joke.Blusod [Symantec]10,358
TrojanDownloader:Win32/Renos.gen!AQ [Microsoft]9,935
FakeAlert-AG.gen.a [McAfee]9,021
Trojan.Fakealert.AFW [Ikarus]5,670
Trojan.Blusod [Symantec]3,836
Troj/FakeAle-FK [Sophos]3,374
Trojan.Win32.FraudPack.ijv [Kaspersky Lab]2,835
TrojanDownloader:Win32/Renos [Microsoft]2,727
FakeAlert-AG [McAfee]1,955
Generic Dropper.bw [McAfee]1,735
Backdoor.Tidserv [Symantec]1,714
TrojanDropper:Win32/Agent.UM [Microsoft]1,665
Trojan.Vundo [Ikarus]1,660
Trojan.Win32.Shutdowner.bqq [Kaspersky Lab]1,660
TROJ_AGENT.BJIA [Trend Micro]1,659
Generic PUP.d [McAfee]854
Packed.Generic.183 [Symantec]822
TROJ_FAKEALRT.CC [Trend Micro]735
Backdoor.Win32.Frauder.jt [Kaspersky Lab]664
Trojan.Blusod!sd6 [PC Tools]526
Trojan.Fakealert.AAI [Ikarus]518
Trojan Horse [Symantec]448
Generic BackDoor [McAfee]356
Trojan:Win32/Tibs.IH [Microsoft]350
Backdoor.Frauder!sd6 [PC Tools]348
TROJ_FAKEAV.MQ [Trend Micro]315
Win-Trojan/Fakeav.118784.C [AhnLab]315
Trojan-Downloader.Win32.Renos.AQ [Ikarus]272
Generic Downloader.x [McAfee]226
Downloader [Symantec]219
Trojan.Fakealert.AFB [Ikarus]210
Backdoor.Win32.Frauder.jt [Ikarus]204
Joke-Bluescreen.c [McAfee]189
Packed.Generic.188 [Symantec]165
Virus.Win32.Tipa [Ikarus]153
Trojan.Win32.FraudPack [Ikarus]143
Backdoor.Win32.TDSS.zj [Kaspersky Lab]132
Infostealer.Banker.C [Symantec]130
Generic Dropper.cx [McAfee]126
Packed.Generic.187 [Symantec]118
Downloader.gen.a [McAfee]113
Trojan.Win32.FraudPack.gen [Kaspersky Lab]111
Packed.Win32.Tdss.c [Kaspersky Lab]110
VirTool:Win32/Obfuscator.DQ [Microsoft]105
Trojan-Spy.Win32.Zbot.gen [Kaspersky Lab]90
Trojan.Win32.FraudPack.aoy [Kaspersky Lab]88
Backdoor.TDSS!sd6 [PC Tools]84
PWS:Win32/Zbot.G [Microsoft]84
Downloader-BKT [McAfee]82
TrojanDownloader:Win32/Renos.DY [Microsoft]78
TrojanDownloader:Win32/Renos.gen!AU [Microsoft]66
Trojan-Spy.Win32.Zbot [Ikarus]62
Downloader.MisleadApp [Symantec]57
Trojan:Win32/Alureon.gen [Microsoft]57
Win-Trojan/Fakeav.118784 [AhnLab]56
Backdoor.Trojan [Symantec]53
Trojan-Downloader.Win32.Renos.AY [Ikarus]49
Backdoor.Paproxy [Symantec]48
Mal/Generic-A [Sophos]48
PWS:Win32/Zbot.J [Microsoft]48
Win-Trojan/Agent.35840.KQ [AhnLab]48
Generic.dx [McAfee]47
Trojan.Fakeavalert [Symantec]47
Trojan.FraudPack!sd6 [PC Tools]47
Rootkit.Win32.TDSS [Ikarus]42
Win-Trojan/Fakeav.118784.B [AhnLab]42
Program:Win32/Antivirus2008 [Microsoft]40
Generic PWS.y [McAfee]38
FakeAlert-SpywareGuard.gen.b [McAfee]37
Trojan:Win32/Alureon.gen!U [Microsoft]37
Spy-Agent.bw [McAfee]36
Trojan:Win32/Zbot.BX [Microsoft]35
TrojanSpy:Win32/Zbot.gen!C [Microsoft]35
Virus.Trojan.Win32.FraudPack [Ikarus]33
Trojan:Win32/Alureon.gen!J [Microsoft]29
Trojan.Zlob [Symantec]28
Trojan.TDSServ [PC Tools]27
Trojan:Win32/Sudiet.B [Microsoft]27
Trojan-Downloader.Win32.FraudLoad [Ikarus]26
TrojanDownloader:Win32/Renos.gen!AS [Microsoft]26
Mal/EncPk-CZ, Mal/TDSSPack-Q [Sophos]25
Packed.Generic.200 [Symantec]24
Program:Win32/XPAntiVirus [Microsoft]24
Rootkit.Win32.TDSS.bph [Kaspersky Lab]24
Troj/FakeVir-KH [Sophos]24
Trojan.FakeAlert [PC Tools]23
Generic PUP.z [McAfee]21
Infostealer [Symantec]20
PWS:Win32/Zbot.gen!B [Microsoft]20
PWS:Win32/Zbot.M [Microsoft]20
DNSChanger.gen [McAfee]19
AntiVirus2008 [Symantec]18
Generic FakeAlert.a [McAfee]18
Trojan.Win32.FraudPack.gxo [Kaspersky Lab]18
Trojan-Downloader.Win32.CodecPack.eoj [Kaspersky Lab]18
Trojan-Downloader.Win32.Small [Ikarus]18
AntiVirus2009 [Symantec]17
TROJ_AGENTT.BD [Trend Micro]17
Trojan-Downloader.CodecPack [Ikarus]17

Mal/EncPk-CZ [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation334
Ukraine9

Mal/EncPk-CZ [Sophos] is known to be created as:
%AppData%\microsoft\windows\lsass.exe
%AppData%\microsoft\windows\winlogon.exe
%CommonAppData%\lineageii.exe
%CommonAppData%\microsoft\network\dlls\iemodule.dll
%CommonAppData%\svhost.exe
%ProgramFiles%\internet antivirus\iaupdater.exe
%ProgramFiles%\internet antivirus\iavir.exe
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\microsoft common\wuauclt.exe
%ProgramFiles%\pchealthcenter\0.exe
%ProgramFiles%\pchealthcenter\1.exe
%ProgramFiles%\pchealthcenter\2.exe
%ProgramFiles%\pchealthcenter\3.exe
%ProgramFiles%\pchealthcenter\4.exe
%ProgramFiles%\pchealthcenter\5.exe
%ProgramFiles%\pchealthcenter\7.exe
%ProgramFiles%\prodm\prodm.exe
%ProgramFiles%\rhc75dj0erc1\rhc75dj0erc1.exe
%ProgramFiles%\rhc75dj0erc1\uninstall.exe
%ProgramFiles%\richvideocodec\d100747.exe
%ProgramFiles%\richvideocodec\multiloader.dll
%ProgramFiles%\spyware guard 2008\spywareguard.exe
%ProgramFiles%\spyware guard 2008\uninstall.exe
%ProgramFiles%\system guard 2009\systemguard.exe
%ProgramFiles%\system guard 2009\uninstall.exe
%ProgramFiles%\target web ads\targetwebadsb.exe
%ProgramFiles%\whcc5dj0erc1\whcc5dj0erc1.exe
%System%\andromedaav.exe
%System%\blphc35dj0erc1.scr
%System%\css2_32.dll
%System%\cssrss.exe
%System%\dgmoeqh.dll
%System%\iebho.dll
%System%\ieexplorer32.exe
%System%\ieupdates.exe
%System%\kdarh.exe
%System%\kdbed.exe
%System%\kdblm.exe
%System%\kdcya.exe
%System%\kddji.exe
%System%\kdeln.exe
%System%\kdenh.exe
%System%\kdeop.exe
%System%\kdfjr.exe
%System%\kdfkn.exe
%System%\kdfnh.exe
%System%\kdgcz.exe
%System%\kdgvz.exe
%System%\kdhcf.exe
%System%\kdhqk.exe
%System%\kdjlv.exe
%System%\kdkxu.exe
%System%\kdlma.exe
%System%\kdlsf.exe
%System%\kdmpu.exe
%System%\kdmzw.exe
%System%\kdodz.exe
%System%\kdohp.exe
%System%\kdowe.exe
%System%\kdozp.exe
%System%\kdpdw.exe
%System%\kdpoh.exe
%System%\kdpui.exe
%System%\kdqon.exe
%System%\kdqrh.exe
%System%\kdrnz.exe
%System%\kdryz.exe
%System%\kdsuj.exe
%System%\kdtrn.exe
%System%\kdufr.exe
%System%\kdvja.exe
%System%\kdwau.exe
%System%\kdwfk.exe
%System%\kdxmc.exe
%System%\kdxpm.exe
%System%\kdyfc.exe
%System%\kdyim.exe
%System%\kdyja.exe
%System%\kdzwf.exe
%System%\lphc35dj0erc1.exe
%System%\mkrnl.exe
%System%\msiconf.exe
%System%\mssrv32.exe
%System%\msupdate.exe
%System%\msxml71.dll
%System%\ntos.exe
%System%\oembios.exe
%System%\pphc35dj0erc1.exe
%System%\sdra64.exe
%System%\sysrest32.exe
%System%\tdssl.dll
%System%\twex.exe
%System%\twext.exe
%System%\update32.exe
%System%\vhosts.exe
%System%\winras.exe
%System%\winscenter.exe
%System%\winupdate.exe
%System%\yur1.exe
%System%\yur10.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).