Threat Search: 

ThreatExpert's Statistics for TrojanDropper:Win32/Cutwail.AL [Microsoft]:

TrojanDropper:Win32/Cutwail.AL [Microsoft] is also known as:
Threat AliasNumber of Incidents
Mal/Pushdo-A [Sophos]86
Trojan.Pandex [Symantec]45
FakeAlert-AG.gen.c [McAfee]31
Trojan-Dropper.Win32.Cutwail [Ikarus]28
Trojan Horse [Symantec]24
FakeAlert-AG.gen.b [McAfee]21
Trojan.Win32.Crypt.mv [Kaspersky Lab]18
Downloader [Symantec]16
Generic Dropper [McAfee]15
Mal/Generic-A [Sophos]12
Trojan-Downloader.Win32.Cutwail [Ikarus]12
Trojan-Dropper.Kobcka [Ikarus]11
Generic Downloader.x [McAfee]10
Trojan.Win32.Agent [Ikarus]10
Trojan.Win32.Agentb [Ikarus]9
Troj/Dloadr-CBW [Sophos]6
Trojan.Win32.Inject.kwi [Kaspersky Lab]6
Cutwail [McAfee]5
Spy-Agent.bv.gen.b [McAfee]5
Trojan.Win32.Inject [Ikarus]5
Trojan.Kobcka [Ikarus]4
Backdoor.Trojan [Symantec]3
Trojan.Pandex!sd6 [PC Tools]3
Trojan.Win32.Crypt.mv [Ikarus]3
Trojan-Downloader.Win32.Agent.aslm [Kaspersky Lab]3
Trojan-Dropper.Agent [Ikarus]3
Trojan-Dropper.Win32.Cutwail.AL [Ikarus]3
Dropper/Agent.30208.AK [AhnLab]2
Generic.dx [McAfee]2
Troj/Pushdo-Gen, Mal/Pushdo-A [Sophos]2
Trojan.Agent!sd6 [PC Tools]2
Trojan.Win32.Agent.admk [Kaspersky Lab]2
Trojan.Win32.Agent.alvf [Kaspersky Lab]2
Trojan.Win32.Agent.ampl [Kaspersky Lab]2
Trojan.Win32.Agent.apck [Kaspersky Lab]2
Trojan.Win32.Agent.asqn [Kaspersky Lab]2
Trojan.Win32.Crypt [Ikarus]2
Trojan.Win32.Pakes.may [Kaspersky Lab]2
Trojan-Downloader.Win32.Agent.aoko [Kaspersky Lab]2
Trojan-Downloader.Win32.Agent.bhjw [Kaspersky Lab]2
Trojan-Downloader.Win32.Tibs.kqf [Kaspersky Lab]2
Trojan-Dropper.Win32.Agent.afvt [Kaspersky Lab]2
Backdoor.Win32.Agent.adsq [Kaspersky Lab]1
Backdoor.Win32.Agent.tch [Kaspersky Lab]1
Backdoor.Win32.Small.hmt [Kaspersky Lab]1
Backdoor.Win32.Small.hnc [Kaspersky Lab]1
Dropper/Agent.40448.BD [AhnLab]1
Dropper/Agent.40960.BF [AhnLab]1
Dropper/Kobcka.40448 [AhnLab]1
Dropper/Sibeair.22016 [AhnLab]1
FakeAlert-AB.dldr [McAfee]1
FakeAlert-AG [McAfee]1
Infostealer.Gampass [Symantec]1
Troj/Agent-HWO [Sophos]1
Troj/Agent-IBL [Sophos]1
Troj/Agent-IBV [Sophos]1
Troj/Agent-IBZ [Sophos]1
Troj/DwnLdr-HMT [Sophos]1
Troj/Pushdo-W [Sophos]1
TROJ_PANDEX.DV [Trend Micro]1
TROJ_PUSHDO.CZ [Trend Micro]1
TROJ_PUSHDO.DA [Trend Micro]1
TROJ_RSNET.RHB [Trend Micro]1
TROJ_SMALL.MAM [Trend Micro]1
TROJ_SMALL.MBZ [Trend Micro]1
Trojan.Agent.ADMK [PC Tools]1
Trojan.Agent2!sd6 [PC Tools]1
Trojan.Agentb!sd6 [PC Tools]1
Trojan.Inject [PC Tools]1
Trojan.Win32.Agent.afim [Kaspersky Lab]1
Trojan.Win32.Agent.agjo [Kaspersky Lab]1
Trojan.Win32.Agent.agzl [Kaspersky Lab]1
Trojan.Win32.Agent.ahqb [Kaspersky Lab]1
Trojan.Win32.Agent.ahqc [Kaspersky Lab]1
Trojan.Win32.Agent.aiba [Kaspersky Lab]1
Trojan.Win32.Agent.aksj [Kaspersky Lab]1
Trojan.Win32.Agent.akta [Kaspersky Lab]1
Trojan.Win32.Agent.akto [Kaspersky Lab]1
Trojan.Win32.Agent.arnc [Kaspersky Lab]1
Trojan.Win32.Agent.aurw [Kaspersky Lab]1
Trojan.Win32.Agent.avwq [Kaspersky Lab]1
Trojan.Win32.Agent.bicr [Kaspersky Lab]1
Trojan.Win32.Agent.brbx [Kaspersky Lab]1
Trojan.Win32.Agent.bvhg [Kaspersky Lab]1
Trojan.Win32.Agent2 [Ikarus]1
Trojan.Win32.Agent2.ab [Kaspersky Lab]1
Trojan.Win32.Agent2.bxd [Kaspersky Lab]1
Trojan.Win32.Agentb.aw [Kaspersky Lab]1
Trojan.Win32.Agentb.ba [Kaspersky Lab]1
Trojan.Win32.Agentb.bc [Kaspersky Lab]1
Trojan.Win32.Agentb.bt [Kaspersky Lab]1
Trojan.Win32.Agentb.cc [Kaspersky Lab]1
Trojan.Win32.Buzus.abqk [Kaspersky Lab]1
Trojan.Win32.Buzus.abrk [Kaspersky Lab]1
Trojan.Win32.Buzus.abvh [Kaspersky Lab]1
Trojan.Win32.Buzus.acbd [Kaspersky Lab]1
Trojan.Win32.Buzus.acbi [Kaspersky Lab]1
Trojan.Win32.Crypt.lw [Kaspersky Lab]1
Trojan.Win32.Inject.jbe [Kaspersky Lab]1
Trojan.Win32.Inject.jgf [Kaspersky Lab]1

TrojanDropper:Win32/Cutwail.AL [Microsoft] is known to be created as:
%System%\cpl32ver.exe
%System%\msmsgrs.exe
%System%\reader_s.exe
%System%\rs32net.exe
%System%\winnt64.dll
%Temp%\kafan virlist 2009.04.13\090413-1-0.exe
%UserProfile%\reader_s.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %UserProfile% is a variable that specifies the current user's profile folder. By default, this is C:\Documents and Settings\[UserName] (Windows NT/2000/XP).