Threat Search: 

ThreatExpert's Statistics for Virus.Win32.Virut.ce [Kaspersky Lab]:

Virus.Win32.Virut.ce [Kaspersky Lab] is also known as:
Threat AliasNumber of Incidents
W32.Virut.CF [Symantec]3,094
W32/Scribble-B [Sophos]2,772
Virus:Win32/Virut.BM [Microsoft]2,718
Win32/Virut.F [AhnLab]2,222
W32/Virut.n.gen [McAfee]1,858
Win32/Virut.E [AhnLab]827
New Win32 [McAfee]490
Malware.Virut [PC Tools]434
Virus:Win32/Virut.gen!O [Microsoft]294
W32/Virut.n [McAfee]285
W32/Scribble-A [Sophos]269
New Win32.g4 [McAfee]178
Virus.Win32.Virut [Ikarus]136
Virus.Win32.Sality [Ikarus]129
PE_VIRUX.H-3 [Trend Micro]121
Mal/HckPk-A, W32/Scribble-B [Sophos]93
New Poly Win32 [McAfee]92
Virus:Win32/Virut.gen!E [Microsoft]87
Virus.Win32.Bifrose [Ikarus]67
Mal/Bifrose-S, W32/Scribble-B [Sophos]55
PE_VIRUX.E-2 [Trend Micro]50
PE_VIRUX.A-1 [Trend Micro]46
Virus.Win32.Virut.bo [Ikarus]45
Trojan-Banker.Win32.Bancos [Ikarus]38
PE_VIRUX.E-3 [Trend Micro]34
BackDoor-CEP.gen.au [McAfee]31
Spam-Mailbot [McAfee]31
PE_VIRUX.A [Trend Micro]30
not-a-virus:Porn-Dialer.Win32.Agent.bk [Ikarus]25
Trojan-Downloader.Win32.Cutwail [Ikarus]25
PE_VIRUX.F-2 [Trend Micro]24
PE_VIRUX.F-3 [Trend Micro]23
W32.Virut [Ikarus]23
Backdoor.Rbot [Ikarus]22
Trojan-Spy.Win32.Banker.RM [Ikarus]22
W32/Sdbot.worm.gen.g [McAfee]22
WORM_RBOT.GEN-1 [Trend Micro]22
W32/Rbot-Fam, W32/Scribble-B [Sophos]21
Worm.Akbot.Gen [PC Tools]21
Trojan.Win32.Banker [Ikarus]20
Backdoor.Win32.Popwin [Ikarus]19
Mal/Generic-A [Sophos]19
Exploit.Win32.IMG-WMF [Ikarus]18
Virus.Virut.j [PC Tools]18
Virus.Win32.Virut.q [Ikarus]18
Email-Worm.Win32.Mydoom.bj [Ikarus]17
Mal/HckPk-A [Sophos]17
Trojan:Win32/Puzlice.A [Microsoft]17
W32.Mytob@mm [Symantec]17
Mal/Scribble-C, W32/Scribble-B [Sophos]16
New Win32.g3 [McAfee]16
Trojan.Agent.DEL [PC Tools]16
TrojanDropper:Win32/Puzlice.A [Microsoft]16
Trojan-Spy.Win32.VB [Ikarus]16
Backdoor.Win32.Bifrose [Ikarus]15
Packed.Win32.Koblu [Ikarus]15
Backdoor.Win32.Beastdoor [Ikarus]14
New Win32.g2 [McAfee]14
Trojan-Dropper.Agent [Ikarus]14
Trojan Horse [Symantec]12
Virus.Win32.JunkPoly [Ikarus]12
VirTool.Win32.DelfInject [Ikarus]11
Virus.Win32.Virtob [Ikarus]11
Virus:Win32/Virut.gen!M [Microsoft]11
Mal/Bifrose-S, Mal/Bifrose-S, W32/Scribble-B [Sophos]10
Packed.Win32.TDSS.z [Kaspersky Lab]10
PE_VIRUX.D-1 [Trend Micro]10
PWS-Banker [McAfee]10
Spammer [Ikarus]10
Spy-Agent.bv.gen.b [McAfee]10
Trojan.Win32.Patched [Ikarus]10
Backdoor.Win32.Refpron [Ikarus]9
Spam-Mailbot.h.gen.a [McAfee]9
Suspicious.MH690 [Symantec]9
Trojan.Fakeavalert [Symantec]9
Trojan-Clicker.Win32.Delf [Ikarus]9
Trojan-Clicker.Win32.VB [Ikarus]9
Downloader [Symantec]8
Mal/Behav-043, W32/Scribble-B [Sophos]8
PE_VIRUX.J-4 [Trend Micro]8
Virus.Win32.Virut.n [Ikarus]8
Win32.Cadoiac.A [Ikarus]8
Win-Trojan/Xema.variant [AhnLab]8
Trojan.Win32.VB [Ikarus]7
Trojan-Downloader.Win32.Banload [Ikarus]7
Virus:Win32/Virut.gen!N [Microsoft]7
W32/DelpBck-Gen [Sophos]7
Worm:Win32/Neeris.AN [Microsoft]7
Backdoor:Win32/Refpron.M [Microsoft]6
Cutwail [McAfee]6
Generic Dropper.ln [McAfee]6
Generic PWS.ak [McAfee]6
New Malware.bj [McAfee]6
PE_VIRUX.E-4 [Trend Micro]6
Trojan.Adclicker [Symantec]6
Trojan:Win32/Winwebsec [Microsoft]6
Trojan-Downloader.Win32.Small.amcd [Kaspersky Lab]6
Trojan-Dropper [Ikarus]6
Virus.W32.Sality [Ikarus]6
W32.Imaut [Symantec]6

Virus.Win32.Virut.ce [Kaspersky Lab] has the following possible countries of origin:
OriginNumber of Incidents
China428
Russian Federation166
Sweden100
Germany64
Spain51
United Kingdom51
Brazil25
France19
Saudi Arabia19
Taiwan16
Italy14
Poland13
Turkey11
Australia7
Belgium7
Portugal7
Czech Republic6
Israel6
Netherlands5
Egypt4
Canada3
Greece3
Austria2
Croatia2
Iran2
Iraq2
Jordan2
Norway2
Oman2
Slovenia2
Chile1
Finland1
Hungary1
Indonesia1
Japan1
Lebanon1
Mexico1
Republic of Korea1
Romania1
Slovakia1
Switzerland1
Syria1

Virus.Win32.Virut.ce [Kaspersky Lab] is known to be created as:
%AppData%\converter7.exe
%AppData%\e4u.exe
%AppData%\sysdate32.exe
%CommonAppData%\11540624\11540624.exe
%CommonAppData%\11548124\11548124.exe
%CommonAppData%\11550464\11550464.exe
%CommonAppData%\11551254\11551254.exe
%CommonAppData%\11559214\11559214.exe
%CommonAppData%\11593434\11593434.exe
%CommonPrograms%\chkdisk.exe
%FontsDir%\fonts.exe
%FontsDir%\logcde.dll
%FontsDir%\services.exe
%FontsDir%\svchost.exe
%FontsDir%\tskmgr.exe
%FontsDir%\uninstall_.exe
%FontsDir%\unwise_.exe
%FontsDir%\windef.dll
%LocalSettings%\tempkey.exe
%ProgramFiles%\alphaant\alpha.exe
%ProgramFiles%\bifrost\server.exe
%ProgramFiles%\bifrost\sosue.exe
%ProgramFiles%\common files\system\msasp32.exe
%ProgramFiles%\gamazer.3.exe
%ProgramFiles%\manson\liser.exe
%ProgramFiles%\meex.exe
%ProgramFiles%\microsoft common\svchost.exe
%ProgramFiles%\no-ip\duc20.exe
%ProgramFiles%\thunmail\testabd.exe
%ProgramFiles%\windows\csrss.exe
%Programs%\startup\1sass.exe
%Programs%\startup\f46b2.exe.exe
%System%\.00cd1a40\00cd1a40.exe
%System%\1054v.exe
%System%\1061044.exe
%System%\1114878.exe
%System%\1124216.exe
%System%\1163889.exe
%System%\1392618.exe
%System%\1438649.exe
%System%\1472391.exe
%System%\1502472.exe
%System%\155309.exe
%System%\1587167.exe
%System%\1673281.exe
%System%\1772553.exe
%System%\1775869.exe
%System%\1949257.exe
%System%\2501627.exe
%System%\2713724.exe
%System%\28463\svchost.exe
%System%\2851786.exe
%System%\28892.exe
%System%\294748.exe
%System%\2985758.exe
%System%\3216959.exe
%System%\3361\svchost.exe
%System%\3362833.exe
%System%\3429789.exe
%System%\3555246.exe
%System%\3780283.exe
%System%\3824534.exe
%System%\3827158.exe
%System%\3833211.exe
%System%\3955942.exe
%System%\3967233.exe
%System%\3976359.exe
%System%\4121012.exe
%System%\4337687.exe
%System%\4348703.exe
%System%\4350657.exe
%System%\4358164.exe
%System%\4548869.exe
%System%\4662394.exe
%System%\467663.exe
%System%\5220132.exe
%System%\5510813.exe
%System%\5556131.exe
%System%\5581308.exe
%System%\5621714.exe
%System%\5700937.exe
%System%\5781036.exe
%System%\5791727.exe
%System%\5915293.exe
%System%\5919718.exe
%System%\5922922.exe
%System%\5934549.exe
%System%\5941568.exe
%System%\6180215.exe
%System%\6383005.exe
%System%\6424219.exe
%System%\6568857.exe
%System%\6603799.exe
%System%\6933075.exe
%System%\6953501.exe
%System%\7462687.exe
%System%\7607646.exe
%System%\7888895.exe
%System%\8010345.exe
%System%\8054758.exe
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).