Threat Search: 

ThreatExpert's Statistics for Mal/EncPk-EI [Sophos]:

Mal/EncPk-EI [Sophos] is also known as:
Threat AliasNumber of Incidents
PWS:Win32/Zbot.gen!G [Microsoft]7
Downloader [Symantec]4
TrojanDownloader:Win32/Obitel.gen!A [Microsoft]4
Infostealer.Banker.C [Symantec]2
Trojan-Downloader.Agent!sd6 [PC Tools]2
Trojan-Dropper.Agent [Ikarus]2
Trojan-Spy.Win32.Zbot.bol [Kaspersky Lab]2
TrojanSpy.Zbot.HN [PC Tools]2
Backdoor.Arin!sd6 [PC Tools]1
Backdoor.Paproxy [Symantec]1
Backdoor.Trojan [Symantec]1
Backdoor.Win32.Arin.b [Kaspersky Lab]1
Backdoor.Win32.Kbot.fg [Ikarus]1
Backdoor.Win32.Kbot.fg [Kaspersky Lab]1
Backdoor:Win32/Phdet.gen!A [Microsoft]1
BKDR_AGENT.SHH [Trend Micro]1
Generic BackDoor [McAfee]1
New Malware.ix [McAfee]1
Spy-Agent.bw [McAfee]1
Spy-Agent.bw.gen [McAfee]1
TROJ_AGENT.AXBZ [Trend Micro]1
TROJ_FAKENIT.C [Trend Micro]1
Trojan.Win32.FraudPack.gen [Kaspersky Lab]1
Trojan.Win32.KillAV.aah [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.aemu [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.afhz [Kaspersky Lab]1
Trojan-Spy.Win32.Zbot [Ikarus]1
Trojan-Spy.Win32.Zbot.bor [Ikarus]1
Trojan-Spy.Win32.Zbot.dkx [Kaspersky Lab]1
TSPY_ZBOT.OJ [Trend Micro]1
Win-Trojan/Agent.8192.MQ [AhnLab]1
Win-Trojan/Agent.8192.MV [AhnLab]1

Mal/EncPk-EI [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
France1
Russian Federation1

Mal/EncPk-EI [Sophos] is known to be created as:
%System%\laxhbnd.exe
%System%\mssrv32.exe
%System%\ntos.exe
%System%\vmlv.exe
%UserProfile%\hixqoj.exe
%UserProfile%\xcknmbm.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).