Threat Search: 

ThreatExpert's Statistics for W32/Vetor-A [Sophos]:

W32/Vetor-A [Sophos] is also known as:
Threat AliasNumber of Incidents
W32/Virut.gen [McAfee]1,330
W32.Virut.U [Symantec]816
Win32.Virut.Gen.5 [PC Tools]790
Virus.Win32.Virut.n [Kaspersky Lab]707
Virus.Win32.Virut.q [Kaspersky Lab]701
Win32.Virut.Gen [PC Tools]438
Virus:Win32/Virut.AK [Microsoft]382
W32.Virut.B [Symantec]380
PE_VIRUT.D [Trend Micro]372
PE_VIRUT.XO [Trend Micro]360
PE_VIRUT.XP [Trend Micro]297
Virus:Win32/Virut.AP [Microsoft]263
Virus:Win32/Virut.AE [Microsoft]243
Win32/Virut.D [AhnLab]200
PE_VIRUT.XL [Trend Micro]173
Virus:Win32/Virut.AF [Microsoft]158
Virus.Win32.Sality [Ikarus]106
Virus:Win32/Virut.L [Microsoft]94
Trojan-Downloader.Win32.VB.bbi [Ikarus]93
Virus.Win32.Cheburgen.a [Ikarus]87
Virus.Win32.Virut [Ikarus]82
Virus:Win32/Virut.K [Microsoft]65
PE_VIRUT.XS [Trend Micro]50
Virus:Win32/Virut.AR [Microsoft]49
Virus.Win32.Virut.q [Ikarus]48
Win32/Virut.C [AhnLab]47
W32.Virut.R [Symantec]46
W32.SillyFDC [Symantec]38
Virus:Win32/Virut.D [Microsoft]34
W32.Virut!gen [Symantec]33
W32.Virut.H [Symantec]30
PE_VIRUT.XQ [Trend Micro]29
Virus:Win32/Virut.AH [Microsoft]29
PE_VIRUT.XI [Trend Micro]27
Virus.Win32.Virut.o [Ikarus]27
Virus.Virut.na [PC Tools]26
Virus:Win32/Virut.AG [Microsoft]26
PE_VIRUT.XK [Trend Micro]25
Virus.Win32.Virut.n [Ikarus]24
Virus:Win32/Virut.AN [Microsoft]24
W32.Spybot.Worm [Symantec]22
Spam-Mailbot [McAfee]20
Generic FakeAlert.d [McAfee]19
W32.IRCBot [Symantec]18
Generic VB.c [McAfee]16
Worm.Win32.VB.du [Ikarus]16
Worm.VB.YVF [PC Tools]15
FakeAlert-AG.gen.c [McAfee]13
PWS-Gamania.gen.a [McAfee]13
Trojan-Spy.Win32.Banker.RM [Ikarus]12
Virus.Win32.Cheburgen [Ikarus]12
Virus.Win32.Virut.bo [Ikarus]12
W32/Nachi.worm.a [McAfee]12
Worm.Win32.Nachi [PC Tools]12
Win-Trojan/Xema.variant [AhnLab]11
Trojan.Win32.Pakes.cob [Kaspersky Lab]10
Win32.Virtob.2 [Ikarus]10
Worm.VB.FMU [PC Tools]10
Backdoor:Win32/Poebot.BG [Microsoft]9
Virus.Win32.Virut.au [Ikarus]9
W32.Rajump [Symantec]9
Win-Trojan/Downloader.11264.GK [AhnLab]9
Backdoor:Win32/Poebot.BA [Microsoft]8
Downloader [Symantec]8
Trojan.Agent.VYJ [PC Tools]8
Backdoor:Win32/Poebot.AT [Microsoft]7
Trojan-Downloader.Win32.Small [Ikarus]7
Trojan-Dropper.Agent [Ikarus]7
Trojan-Dropper.Delf [Ikarus]7
Trojan-Dropper.Kobcka [Ikarus]7
VirTool.Win32.DelfInject [Ikarus]7
Virus.Win32.Virtob [Ikarus]7
Generic.Sdbot [Ikarus]6
PE_PAGIPEF.BS-O [Trend Micro]6
PE_RUNGBU.C [Trend Micro]6
Trojan Horse [Symantec]6
Trojan.Win32.Agent [Ikarus]6
Virus.Win32.VB.bg [Ikarus]6
Virus.Win32.Virut.ak [Ikarus]6
Virus:Win32/Sality.AM [Microsoft]6
Worm.Rungbu.B [PC Tools]6
Worm.Win32.AutoRun [Ikarus]6
Backdoor.Win32.Rbot [Ikarus]5
Email-Worm.Win32.Runouce.B [Ikarus]5
Hider [McAfee]5
JS.Chir.B [PC Tools]5
not-a-virus:Porn-Dialer.Win32.Agent.bk [Ikarus]5
Packer.RLPack.D [Ikarus]5
Trojan.Hider.G [PC Tools]5
Trojan.Win32.Pakes [Ikarus]5
Virus:Win32/Virut.gen!AI [Microsoft]5
Virus:Win32/Virut.gen!L [Microsoft]5
W32.Rontokbro@mm [Symantec]5
Win32/IRCBot.worm.variant [AhnLab]5
Win-Trojan/Spambot.7680 [AhnLab]5
Worm.VB.ZVX [PC Tools]5
Backdoor.Rbot [Ikarus]4
Backdoor.Win32.IRCBot [Ikarus]4
Backdoor.Win32.VanBot [Ikarus]4
Downloader-BPL [McAfee]4

W32/Vetor-A [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
China62
Netherlands42
Germany29
Russian Federation25
United Kingdom22
Israel11
Brazil10
Italy9
France5
Spain5
Thailand5
Japan3
Republic of Korea3
Sweden3
Taiwan3
Turkey3
Czech Republic2
Poland2
Belgium1
Canada1
Denmark1
Finland1
Iran1
Portugal1
Romania1
Ukraine1

W32/Vetor-A [Sophos] is known to be created as:
%AllUsersProfile%\documents.exe
%AllUsersProfile%\favorites.exe
%AppData%\%username%.task\services.exe
%AppData%\br6657on.exe
%AppData%\csrss.exe
%AppData%\explorer.exe
%AppData%\facegame\facegame.exe
%AppData%\hidn\hidn2.exe
%AppData%\hidn\hldrrr.exe
%AppData%\inetinfo.exe
%AppData%\lsass.exe
%AppData%\microsoft\nuxa.exe
%AppData%\real\ntoscore.exe
%AppData%\services.exe
%AppData%\smss.exe
%AppData%\spool.exe
%AppData%\svchost.exe
%AppData%\usrinit.exe
%AppData%\winlogon.exe
%CommonAppData%\normal.exe
%CommonDesktopDir%\desktop.exe
%CommonDocuments%\documents.exe
%CommonFavorites%\favorites.exe
%CommonPrograms%\accessories.exe
%CommonPrograms%\accessories\accessibility.exe
%CommonPrograms%\accessories\accessibility\accessibility.exe
%CommonPrograms%\accessories\accessories.exe
%CommonPrograms%\programs.exe
%CommonPrograms%\startup\autorun.exe
%CommonStartMenu%\programs.exe
%DesktopDir%\desktop.exe
%FontsDir%\fonts.exe
%FontsDir%\services.exe
%FontsDir%\tskmgr.exe
%FontsDir%\unwise_.exe
%LocalSettings%\startup.exe
%ProgramFiles%\antivirus 2008\antvrs.exe
%ProgramFiles%\common files\adobeupdate.exe
%ProgramFiles%\common files\system\msasp32.exe
%ProgramFiles%\common files\system\msiwa32.exe
%ProgramFiles%\getpack\getpack22.exe
%ProgramFiles%\icheck\icheck.exe
%ProgramFiles%\messenger.exe
%ProgramFiles%\messenger\messenger.exe
%ProgramFiles%\microsoft common\wuauclt.exe
%ProgramFiles%\microsoft frontpage\version3.0.exe
%ProgramFiles%\microsoft frontpage\version3.0\bin.exe
%ProgramFiles%\microsoft frontpage\version3.0\bin\bin.exe
%ProgramFiles%\microsoft frontpage\version3.0\version3.0.exe
%ProgramFiles%\microsoft office\winword.exe
%ProgramFiles%\mirc\irc bot\services.exe
%ProgramFiles%\netmeeting.exe
%ProgramFiles%\netmeeting\netmeeting.exe
%ProgramFiles%\thunmail\testabd.exe
%ProgramFiles%\twain\twain.exe
%ProgramFiles%\vmware.exe
%ProgramFiles%\xerox.exe
%ProgramFiles%\xerox\nwwia.exe
%ProgramFiles%\xerox\nwwia\nwwia.exe
%ProgramFiles%\xerox\xerox.exe
%ProgramFiles%\xpcode\sexgame.exe
%ProgramFiles%\xpcode\sexscreensaver.scr
%Programs%\startup\ctfmon.exe
%Programs%\startup\findfast.exe
%Programs%\startup\msn.exe
%Programs%\startup\scan.com
%System%\0617152d\services.exe
%System%\1126\ctfmon.exe
%System%\127387645063l.exe
%System%\227387645063l.exe
%System%\28463\akv.exe
%System%\28463\kytc.exe
%System%\28463\naje.exe
%System%\3178629.exe
%System%\3361\svchost.exe
%System%\3fabe9c0.exe
%System%\6292775.exe
%System%\662832100427l.exe
%System%\793693.exe
%System%\7z.exe
%System%\8040\8040.exe
%System%\8040\data.exe
%System%\8040\lsass.exe
%System%\8040\svchost.exe
%System%\abyl.exe
%System%\afub.exe
%System%\algs.exe
%System%\amvo.exe
%System%\avpo.exe
%System%\av-prev.exe
%System%\avsp.exe
%System%\aycxem.exe
%System%\blastclnnn.exe
%System%\blphc35dj0erc1.scr
%System%\botfile.exe
%System%\bttnserv.exe
%System%\burjdftjtfvko.exe
%System%\bypjfxk32.exe
%System%\caudio.exe
%System%\ccapps.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonDesktopDir% is a variable that refers to the file system directory that contains files and folders that appear on the desktop for all users. A typical path is C:\Documents and Settings\All Users\Desktop (Windows NT/2000/XP).
  • %CommonDocuments% is a variable that refers to the file system directory that contains documents that are common to all users. A typical paths is C:\Documents and Settings\All Users\Documents.
  • %CommonFavorites% is a variable that refers to the file system directory that serves as a common repository for all users' favorite items. A typical path is C:\Documents and Settings\All Users\Favorites (Windows NT/2000/XP).
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %CommonStartMenu% is a variable that refers to the file system directory that contains the programs and folders that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu (Windows NT/2000/XP).
  • %DesktopDir% is a variable that refers to the file system directory used to physically store file objects on the desktop. A typical path is C:\Documents and Settings\[UserName]\Desktop.
  • %FontsDir% is a variable that refers to a virtual folder containing fonts. A typical path is C:\Windows\Fonts.
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).