Threat Search: 

ThreatExpert's Statistics for Mal/EncPk-DA [Sophos]:

Mal/EncPk-DA [Sophos] is also known as:
Threat AliasNumber of Incidents
TrojanDownloader:Win32/Cbeplay.E [Microsoft]70
TrojanDownloader:Win32/Cbeplay.I [Microsoft]54
Trojan.Erotpics [Symantec]48
Tibs-Packed [McAfee]28
Spammer:Win32/Cutwail.A [Microsoft]25
Downloader.MisleadApp [Symantec]22
Trojan.Pandex [Symantec]22
BackDoor-DNM [McAfee]21
Trojan-Downloader.Exchanger!sd6 [PC Tools]21
Trojan Horse [Symantec]20
Generic.dx [McAfee]19
Trojan.Erotpics!sd6 [PC Tools]17
Downloader [Symantec]15
Downloader-BKH [McAfee]12
Trojan-Downloader.Win32.Exchanger.acd [Kaspersky Lab]12
TrojanDropper:Win32/Nuwar.gen!ldt [Microsoft]12
Trojan-Downloader.Exchanger.Gen.2 [Ikarus]11
Generic Downloader.x [McAfee]10
Trojan-Downloader.Win32.Exchanger.agc [Kaspersky Lab]9
Mal/Generic-A, Mal/EncPk-DA [Sophos]8
Trojan-Mailfinder.Win32.Mailbot.ce [Kaspersky Lab]8
Trojan.Zlob [Symantec]7
Trojan:Win32/Tibs.gen!G [Microsoft]7
Trojan-Downloader.Win32.Exchanger [Ikarus]7
Trojan-Downloader.Win32.Cbeplay.I [Ikarus]6
Infostealer [Symantec]5
Trojan:Win32/Tibs.gen!K [Microsoft]5
Backdoor.Trojan [Symantec]4
TROJ_EXCHANGE.AF [Trend Micro]4
TROJ_NUWAR.GFZ [Trend Micro]4
TROJ_TIBS.CSZ [Trend Micro]4
Trojan-Downloader.Win32.Exchanger.kx [Kaspersky Lab]4
Trojan-Downloader.Win32.Exchanger.qg [Kaspersky Lab]4
Trojan-Downloader.Win32.Exchanger.rm [Kaspersky Lab]4
TrojanDownloader:Win32/Cbeplay.gen!E [Microsoft]4
TrojanSpy:Win32/Festeal.D [Microsoft]4
BackDoor-DNM.gen [McAfee]3
Downloader.gen.a [McAfee]3
Mal/EncPk-DA, Mal/TibsPak [Sophos]3
Spam-Mailbot [McAfee]3
TROJ_EXCHANGE.AE [Trend Micro]3
TROJ_Generic.A [Trend Micro]3
Trojan-Downloader.Agent.EL [PC Tools]3
Trojan-Downloader.Win32.Cbeplay [Ikarus]3
Trojan-Downloader.Win32.Exchanger.la [Kaspersky Lab]3
Trojan-Downloader.Win32.Exchanger.pv [Kaspersky Lab]3
Trojan-Downloader.Win32.Zlob.npu [Kaspersky Lab]3
Trojan-Dropper.Agent [Ikarus]3
Exploit.AdobeReader [PC Tools]2
Puper [McAfee]2
TROJ_AGENT.KBE [Trend Micro]2
TROJ_DLOADR.HF [Trend Micro]2
TROJ_EXCHANGE.AC [Trend Micro]2
TROJ_EXCHANGER.Y [Trend Micro]2
TROJ_FAKEAV.FP [Trend Micro]2
TROJ_NUWAR.AHE [Trend Micro]2
TROJ_NUWAR.CYA [Trend Micro]2
TROJ_NUWAR.DII [Trend Micro]2
TROJ_NUWAR.DQZ [Trend Micro]2
TROJ_NUWAR.EJZ [Trend Micro]2
TROJ_NUWAR.GGZ [Trend Micro]2
TROJ_TIBS.CLZ [Trend Micro]2
TROJ_XCHANGER.B [Trend Micro]2
Trojan.Pandex!sd6 [PC Tools]2
Trojan.Win32.Agent [Ikarus]2
Trojan-Downloader.Exchanger [PC Tools]2
Trojan-Downloader.Exchanger.Gen.1 [Ikarus]2
Trojan-Downloader.Win32.Agent.yhp [Kaspersky Lab]2
Trojan-Downloader.Win32.Exchanger.mn [Kaspersky Lab]2
Trojan-Downloader.Win32.Exchanger.pf [Kaspersky Lab]2
Trojan-Dropper.Win32.Nuwar.JT [Ikarus]2
Virus.Win32.PrefPoly [Ikarus]2
Backdoor.Win32.Agent.qgc [Kaspersky Lab]1
Mal/TibsPak, Mal/EncPk-DA [Sophos]1
Possible_Nucrp-6 [Trend Micro]1
Puper.dr [McAfee]1
PWS.Win32.Prefsap.D [Ikarus]1
PWS:Win32/Prefsap.D [Microsoft]1
PWS:Win32/Prefsap.E [Microsoft]1
TROJ_AGENT.AFYL [Trend Micro]1
TROJ_AGENT.AGNI [Trend Micro]1
TROJ_AGENT.AKCF [Trend Micro]1
TROJ_AGENT.AKCV [Trend Micro]1
TROJ_AGENT.AWRZ [Trend Micro]1
TROJ_AGENT.AYZO [Trend Micro]1
TROJ_AGENT.SZQ [Trend Micro]1
TROJ_CRYPT.CX [Trend Micro]1
TROJ_DLOAD.CW [Trend Micro]1
TROJ_EXCHANGE.AG [Trend Micro]1
TROJ_EXCHANGE.AJ [Trend Micro]1
TROJ_EXCHANGE.AK [Trend Micro]1
TROJ_EXCHANGE.AN [Trend Micro]1
TROJ_EXCHANGE.Y [Trend Micro]1
TROJ_FAKEALER.EY [Trend Micro]1
TROJ_FAKEAV.CK [Trend Micro]1
TROJ_FAKEAV.FW [Trend Micro]1
TROJ_FAKEAV.TH [Trend Micro]1
TROJ_NUWAR.GXZ [Trend Micro]1
TROJ_NUWAR.UW [Trend Micro]1
TROJ_RENOS.AFD [Trend Micro]1

Mal/EncPk-DA [Sophos] has the following possible country of origin:
OriginNumber of Incidents
Russian Federation10

Mal/EncPk-DA [Sophos] is known to be created as:
%System%\bho32.exe
%System%\cbevbsvc.exe
%System%\cbevnsvc.exe
%System%\cbevtsvc.exe
%System%\ccevtsvc.exe
%System%\cdbgevtsvc.exe
%System%\psyche.exe
%System%\psycheenqueue.exe
Note: %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).