Threat Search: 

ThreatExpert's Statistics for W32/AutoRun-PU [Sophos]:

W32/AutoRun-PU [Sophos] is also known as:
Threat AliasNumber of Incidents
Worm.Autoit [Ikarus]3,990
Worm:AutoIt/YahLover.F!inf [Microsoft]2,170
Worm.IM.Sohanad [PC Tools]70
W32.Imaut [Symantec]1
W32/YahLover.worm.gen [McAfee]1
Worm.AutoIt.dn [PC Tools]1
Worm.Win32.AutoIt [Ikarus]1
Worm.Win32.AutoIt.dn [Kaspersky Lab]1
Worm:AutoIt/Sohanad.AQ [Microsoft]1

W32/AutoRun-PU [Sophos] has the following possible country of origin:
OriginNumber of Incidents
United Kingdom1

W32/AutoRun-PU [Sophos] is known to be created as:
%System%\chrome.exe
%Windir%\chrome.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.