Threat Search: 

ThreatExpert's Statistics for Worm.Autorun!ct [PC Tools]:

Worm.Autorun!ct [PC Tools] is also known as:
Threat AliasNumber of Incidents
Generic!atr [McAfee]10,504
Trojan.Autorun.QO [Ikarus]6,600
W32/AutoIt-O [Sophos]5,621
TextImage/Autorun [AhnLab]3,347
Worm:Win32/Autorun!inf [Microsoft]2,431
Troj/Agent-GXM [Sophos]2,420
Downloader.inf [McAfee]720
Trojan.Noupdate.B [Symantec]592
INF.Autorun.Gen [PC Tools]460
Trojan.Win32.AutoRun.ke [Kaspersky Lab]198
Worm.Win32.AutoRun.dck [Kaspersky Lab]186
W32/Xorer-A [Sophos]178
Worm.Win32.AutoRun [Ikarus]155
Virus:Win32/Xorer.D!inf [Microsoft]132
Trojan.Win32.AutoRun [Ikarus]88
Trojan.Autorun!ct [PC Tools]70
Mal/AutoInf-A [Sophos]28
W32/Autorun.worm.gen [McAfee]25
W32/AutoRun-ZE [Sophos]25
Worm.Win32.AutoRun.lnu [Kaspersky Lab]25
PWS-Gamania.gen.a [McAfee]14
PWS-LegMir.gen.k.dll [McAfee]13
Trojan.Lineage.Gen!Pac.3 [PC Tools]12
Worm.Win32.AutoRun.tgf [Kaspersky Lab]12
Mal/EncPk-CE [Sophos]11
W32.Gammima.AG [Symantec]11
Worm:AutoIt/Autorun.R [Microsoft]10
Worm:Win32/Taterf!inf [Microsoft]8
Mal_NSAnti-1 [Trend Micro]7
W32.SillyFDC [Symantec]7
Win-Trojan/MalPacked.Gen [AhnLab]7
Win-Trojan/Xema.variant [AhnLab]5
Worm.Win32.AutoRun.cnw [Kaspersky Lab]5
Worm:Win32/Taterf.AA [Microsoft]5
Rootkit.Win32.Vanti.gv [Ikarus]4
Troj/BlueDF-Gen, Troj/BlueDF-Gen, Mal/Behav-160 [Sophos]4
Virus.Win32.Agent.SIM [Ikarus]4
W32.Losabel [Symantec]4
Worm.Win32.AutoRun.dot [Kaspersky Lab]4
Generic BackDoor [McAfee]3
Hacktool.Rootkit [Symantec]3
Mal/AutoInf-B, Mal/AutoInf-A [Sophos]3
Trojan.Onlinegames.Gen!Pac.73 [PC Tools]3
Trojan.Packed.NsAnti [Symantec]3
W32/Autorun.worm.b [McAfee]3
Worm.Win32.AutoRun.clb [Kaspersky Lab]3
Worm.Win32.AutoRun.csj [Kaspersky Lab]3
Worm.Win32.AutoRun.dcz [Kaspersky Lab]3
Worm:Win32/Taterf.B.dll [Microsoft]3
WORM_AUTORUN.IY [Trend Micro]3
WORM_NSANTI.CE [Trend Micro]3
Generic PWS.ak [McAfee]2
Infostealer.Gampass [Symantec]2
Mal/AutoInf-A, Mal/AutoInf-B [Sophos]2
PWS:Win32/Frethog.AJ [Microsoft]2
Trojan Horse [Symantec]2
VirTool:Win32/Vanti.gen!D [Microsoft]2
W32/Autoham-Fam [Sophos]2
W32/Autorun.worm.bx!inf [McAfee]2
W32/Autorun.worm.bx.gen [McAfee]2
Worm.Hamweg.Gen [PC Tools]2
Worm.Win32.AutoRun.cub [Kaspersky Lab]2
Worm.Win32.AutoRun.cvy [Kaspersky Lab]2
Worm.Win32.AutoRun.des [Kaspersky Lab]2
Worm.Win32.AutoRun.ejl [Kaspersky Lab]2
Worm.Win32.AutoRun.llw [Kaspersky Lab]2
Worm.Win32.AutoRun.lsz [Kaspersky Lab]2
Worm.Win32.AutoRun.rjl [Kaspersky Lab]2
Worm:Win32/Hamweq.A [Microsoft]2
Worm:Win32/Taterf.A.dll [Microsoft]2
Worm:Win32/Taterf.B [Microsoft]2
WORM_AUTORUN.ABI [Trend Micro]2
WORM_AUTORUN.ANC [Trend Micro]2
WORM_AUTORUN.ATR [Trend Micro]2
WORM_AUTORUN.AWA [Trend Micro]2
WORM_AUTORUN.AWB [Trend Micro]2
Backdoor:Win32/Agent.EO [Microsoft]1
BKDR_HAMWEQ.J [Trend Micro]1
DDoS-Leba [McAfee]1
Dropper/Meredrop.88440 [AhnLab]1
Generic PUP.x [McAfee]1
Generic.dx [McAfee]1
IRC-Worm.Win32.Small [Ikarus]1
Mal/Behav-210, Troj/Intete-Gen [Sophos]1
Mal/Emogen-E, Mal/EncPk-GX, Mal/Basine-C, Mal/Behav-160, Mal/Behav-009 [Sophos]1
Mal/EncPk-CE, Mal/EncPk-DH [Sophos]1
Mal/EncPk-CE, Mal/EncPk-EK [Sophos]1
Mal/Frethog-B [Sophos]1
Mal/Frethog-B, Mal/EncPk-CE, Mal/EncPk-EK [Sophos]1
Mal/PWS-Fam, Mal/EncPk-GF [Sophos]1
Mal/SillyFDC-A [Sophos]1
New Malware.bl [McAfee]1
New Malware.hz [McAfee]1
Packed.Generic.181 [Symantec]1
Packed.Win32.Klone.af [Ikarus]1
Packed.Win32.PolyCrypt.b [Ikarus]1
Packer.Malware.NSAnti.X [Ikarus]1
PWS-LegMir.gen.k [McAfee]1
Trojan.Win32.Agent [Ikarus]1
Trojan:Win32/Agent [Microsoft]1

Worm.Autorun!ct [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
China5
United Kingdom5
Russian Federation1

Worm.Autorun!ct [PC Tools] is known to be created as:
%ProgramFiles%\syscheck.exe
%System%\_syscheck.exe
%System%\amvo.exe
%System%\amvo0.dll
%System%\amvo1.dll
%System%\ckvo.exe
%System%\dllcache\wuauclt.exe
%System%\drivers\etc\networks.exe
%System%\fsp32.exe
%System%\gpmrsrc.dll
%System%\iexplorer.exe
%System%\isass.exe
%System%\kavo.exe
%System%\maxbsload.exe
%System%\service.exe
%System%\vista.exe
%System%\wuauclt.exe
%System%\xp-c300c3ac.exe
%Temp%\asqhbf.dll
%Temp%\ee77xdv.dll
%Temp%\test.exe
%Windir%\ctfmon.exe
%Windir%\inetinfo.exe
%Windir%\virus.exe
%Windir%\winlogon.exe
c:\d1y36.com
c:\kazme__gheyz.exe
c:\knupkb.com
c:\q.com
c:\syswin32.exe
c:\test.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.