Threat Search: 

ThreatExpert's Statistics for TrojanDropper:Win32/Cutwail.AR [Microsoft]:

TrojanDropper:Win32/Cutwail.AR [Microsoft] is also known as:
Threat AliasNumber of Incidents
Downloader [Symantec]4
Spy-Agent.bv.dldr [McAfee]4
Troj/DwnlDr-HIS [Sophos]4
Trojan-Downloader.Win32.Small.aeqm [Kaspersky Lab]4
Trojan-Dropper.SML [Ikarus]4
Mal/Generic-A [Sophos]3
Backdoor.Win32.Agent.rvn [Kaspersky Lab]2
Generic Dropper [McAfee]2
Mal/EncPk-FP [Sophos]2
Backdoor.Agent!sd6 [PC Tools]1
Backdoor.DMSpammer [Symantec]1
Email-Worm.Win32.Joleee.am [Kaspersky Lab]1
Email-Worm.Win32.Joleee.u [Kaspersky Lab]1
Generic BackDoor [McAfee]1
Trojan Horse [Symantec]1
Trojan.Crypt.XPACK [Ikarus]1
Trojan.Pandex [Symantec]1
Trojan.Win32.Agent [Ikarus]1
Trojan.Win32.Agent.acyb [Kaspersky Lab]1
Win32.SuspectCrc [Ikarus]1

TrojanDropper:Win32/Cutwail.AR [Microsoft] is known to be created as:
%System%\rs32net.exe
%Windir%\services.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.