Threat Search: 

ThreatExpert's Statistics for W32/Cocung.worm [McAfee]:

W32/Cocung.worm [McAfee] is also known as:
Threat AliasNumber of Incidents
Worm.Hakaglan.B [PC Tools]85
WORM_IMAUT.E [Trend Micro]68
W32.Yautoit.N [Symantec]55
Worm.Win32.AutoIt.c [Kaspersky Lab]42
IM-Worm.Win32.Sohanad.bm [Kaspersky Lab]29
W32.Imaut.N [Symantec]18
W32/SillyFDC-G [Sophos]17
IM-Worm.Win32.Sohanad [Ikarus]16
Worm.Win32.AutoIt.e [Kaspersky Lab]10
Worm:Win32/Nuqel.A [Microsoft]10
Virus:Win32/Sality.AM [Microsoft]9
W32/Sality-AM [Sophos]7
Mal_AUMAL-2 [Trend Micro]6
Virus.Win32.Sality.aa [Kaspersky Lab]6
W32.Imaut [Symantec]5
WORM_SILLYFDC.B [Trend Micro]5
Win32/Hakaglan.worm.263168 [AhnLab]4
PE_SALITY.JER [Trend Micro]3
Virus.Win32.Hakaglan [Ikarus]3
Worm:Win32/Sohonad [Microsoft]3
PE_SALITY.BU [Trend Micro]2
PE_SALITY.EN [Trend Micro]2
W32.Yautoit [Symantec]2
W32/Sohana-CO [Sophos]2
Win32/Autoit.worm.268216 [AhnLab]2
Win32/Hakaglan.worm.462264 [AhnLab]2
Win32/Kashu.B [AhnLab]2
Worm.Win32.AutoRun.fwl [Kaspersky Lab]2
Backdoor.Trojan [Symantec]1
Mal/Sohana-A [Sophos]1
PE_SALITY.EK [Trend Micro]1
PE_SALITY.EN-1 [Trend Micro]1
Possible_AUMAL-2 [Trend Micro]1
Trojan Horse [Symantec]1
Virus.Win32.Sality.z [Kaspersky Lab]1
Win32.Sality.AM.Gen [PC Tools]1
Worm.AutoIt!sd5 [PC Tools]1
WORM_Generic [Trend Micro]1

W32/Cocung.worm [McAfee] has the following possible country of origin:
OriginNumber of Incidents
United Kingdom88

W32/Cocung.worm [McAfee] is known to be created as:
%System%\rvhost.exe
%Temp%\0004f662_rar\rvhost.exe
%Temp%\00053168_rar\rvhost.exe
%Temp%\000531e5_rar\rvhost.exe
%Temp%\00055674_rar\rvhost.exe
%Temp%\00055693_rar\rvhost.exe
%Temp%\00055730_rar\rvhost.exe
%Temp%\00055af8_rar\rvhost.exe
%Temp%\00058f57_rar\rvhost.exe
%Temp%\00058f66_rar\rvhost.exe
%Temp%\00058fd4_rar\rvhost.exe
%Temp%\000593ac_rar\rvhost.exe
%Temp%\000594e4_rar\rvhost.exe
%Temp%\0005a6c7_rar\rvhost.exe
%Temp%\0005aabe_rar\rvhost.exe
%Temp%\0005d3c2_rar\rvhost.exe
%Temp%\0005d77b_rar\rvhost.exe
%Windir%\rvhost.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.