Threat Search: 

ThreatExpert's Statistics for Worm.Win32.AutoIt [Ikarus]:

Worm.Win32.AutoIt [Ikarus] is also known as:
Threat AliasNumber of Incidents
Generic!atr [McAfee]20,183
Worm.Win32.AutoIt.i [Kaspersky Lab]14,521
W32/Autorun-IK [Sophos]8,610
Worm:Win32/Autorun!inf [Microsoft]8,093
W32/Autorun-IN [Sophos]3,360
W32/SillyFDC-AP [Sophos]1,804
W32/AutoIt-AO [Sophos]575
Worm.Win32.AutoIt.bg [Kaspersky Lab]557
W32/Autorun.worm.et [McAfee]529
Worm.Win32.AutoIt.i [Ikarus]525
W32.Imaut [Symantec]142
W32/YahLover.worm.gen [McAfee]135
W32/YahLover.worm [McAfee]112
Worm.AutoIt.dn [PC Tools]104
W32/Yuner-A [Sophos]101
Worm.Win32.AutoIt.r [Kaspersky Lab]101
W32.Badday.A [Symantec]96
Worm:Win32/Yuner.A [Microsoft]96
Malware.Imaut [PC Tools]94
Worm.Agent.EOVV [PC Tools]86
WORM_UTOTI.BU [Trend Micro]86
Win32/Hybris.worm.261572 [AhnLab]71
W32.SillyDC [Symantec]68
W32.SillyFDC [Symantec]64
Mal/Sohana-A [Sophos]63
IM-Worm.Win32.Sohanad.gen [Kaspersky Lab]59
Worm.Win32.AutoIt.ch [Kaspersky Lab]34
Worm.AutoIT.V [PC Tools]32
Worm.Win32.AutoIt.v [Kaspersky Lab]32
Trojan:Win32/Malagent [Microsoft]30
Worm:AutoIt/Sohanad.AQ [Microsoft]30
W32.Imaut.E [Symantec]26
W32/Sality-AM [Sophos]25
Worm:Win32/Sohanad.I [Microsoft]25
Mal/Generic-A [Sophos]23
Worm.Win32.AutoIt.q [Kaspersky Lab]22
WORM_UTOTI.RC [Trend Micro]22
W32/Sality.gen [McAfee]20
Worm.AutoIt.v [PC Tools]19
Win32/Sohaned.worm.230400 [AhnLab]18
Mal/Sohana-B, Mal/Sohana-A [Sophos]17
Win32/Sohanad.worm.368327 [AhnLab]16
Worm.Win32.AutoIt.dn [Kaspersky Lab]15
WORM_AUTORUN.BWK [Trend Micro]15
Worm:Win32/Sohanad.V [Microsoft]14
Virus:Win32/Sality.AM [Microsoft]13
W32.Imaut.CN [Symantec]12
Worm.Win32.AutoIt.s [Kaspersky Lab]12
W32.Harakit [Symantec]11
Generic.dx [McAfee]10
Mal/Sohana-A, Mal/Autorun-D [Sophos]10
Win32/Kashu.B [AhnLab]10
Win-Trojan/Autorun.215456 [AhnLab]10
Mal/Autorun-D [Sophos]9
PE_SALITY.EN-1 [Trend Micro]9
Win-Trojan/AutoRun.267085 [AhnLab]9
Win32.Sality.AM.Gen [PC Tools]8
Win32/Katrak.worm.289167 [AhnLab]8
Worm.Win32.AutoIt.cb [Kaspersky Lab]8
Mal/Airworm-A [Sophos]7
Mal/Inet-Fam [Sophos]7
PE_SALITY.EK [Trend Micro]7
Virus.Win32.Sality.aa [Kaspersky Lab]7
W32/Autoit-AZ [Sophos]7
W32/Autorun.worm.c [McAfee]7
Worm.AutoIt!sd6 [PC Tools]7
Worm.AutoIt.s [PC Tools]7
not-a-virus:Monitor.Win32.007SpySoft.g [Kaspersky Lab]6
Trojan:Win32/Meredrop [Microsoft]5
W32.Botou [Symantec]5
W32/Autorun.worm.g [McAfee]5
W32/Sality.ag [McAfee]5
Worm.AutoIt!ct [PC Tools]5
Worm.Win32.AutoIt.ar [Kaspersky Lab]5
Bloodhound.Malautoit.2 [Symantec]4
HeurEngine.Malautoit [PC Tools]4
Worm.AutoIt [PC Tools]4
Worm.Win32.AutoIt.ce [Kaspersky Lab]4
Worm:AutoIt/Renocide.gen!A [Microsoft]4
Worm:Win32/Autorun.CQ [Microsoft]4
WORM_AUTORUN.ACO [Trend Micro]4
WORM_AUTORUN.BIK [Trend Micro]4
WORM_IMAUT.HB [Trend Micro]4
IM-Worm.Sohanad!sd6 [PC Tools]3
Malware.Harakit [PC Tools]3
Trojan Horse [Symantec]3
Trojan.Win32.Autoit.cm [Kaspersky Lab]3
W32.Gaut.A [Symantec]3
Win32/Sohard.worm.1096156 [AhnLab]3
Win-Trojan/Autorun.336829 [AhnLab]3
Worm.Win32.AutoIt.as [Kaspersky Lab]3
Generic PWS.y [McAfee]2
INF.Autorun.Gen [PC Tools]2
Mal/Inet-Fam, Mal/Sohana-B, Mal/Sohana-A [Sophos]2
Net-Worm.SillyFDC [PC Tools]2
PE_SALITY.EM [Trend Micro]2
PE_SALITY.EN [Trend Micro]2
PE_SALITY.JER [Trend Micro]2
Troj/Agent-KNF [Sophos]2
Trojan-Downloader.Win32.AutoIt.jj [Kaspersky Lab]2

Worm.Win32.AutoIt [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
United Kingdom279
Russian Federation6
China2
Switzerland2
Iceland1
Israel1
Liechtenstein1
Philippines1
Saudi Arabia1
Slovenia1
Turkey1
Ukraine1

Worm.Win32.AutoIt [Ikarus] is known to be created as:
%CommonPrograms%\startup\sndvol32.exe
%Profiles%\default user\templates\winword.doc.exe
%Profiles%\default user\templates\winword2.doc.exe
%ProgramFiles%\explorer.exe
%Programs%\startup\sndvol32.exe
%System%\abyoaoqozober.exe
%System%\aegomjpywshyv.exe
%System%\amvo0.dll
%System%\amvo2.dll
%System%\bewuosqd.exe
%System%\bmnbftrhbhvvrky.exe
%System%\boxaqdtf.exe
%System%\btkkvmsnpshmo.exe
%System%\bvlvzivqlc.exe
%System%\bycool1\windo.exe
%System%\byrdygkulo.exe
%System%\bysrhyovlwfma.exe
%System%\cbbsjqpgzb.exe
%System%\ccsjyawoob.exe
%System%\cdtcdpxiljrgn.exe
%System%\charm.exe
%System%\chrome.exe
%System%\csaxbjjamf.exe
%System%\cwxvhmhviu.exe
%System%\dndsgkrwziqszdm.exe
%System%\drivers\ctfmon.exe
%System%\eafamzrruk.exe
%System%\edaqyiiooa.exe
%System%\eqdlwgpwuflhj.exe
%System%\ezwmacvfazezryl.exe
%System%\fapclaidtgusa.exe
%System%\fdisk.com
%System%\fdjzymuhyadtd.exe
%System%\fgadnygxjnnsidf.exe
%System%\fsfbhcinbs.exe
%System%\gphone.exe
%System%\hfxmxjisezxve.exe
%System%\hirekbafclycx.exe
%System%\hmvkiluaxjgic.exe
%System%\hpqkfpwctk.exe
%System%\hpykxmqy.exe
%System%\icbodiizoxrsizq.exe
%System%\ichjxdgbhhbxjzv.exe
%System%\ieuorimb.exe
%System%\iocbzigq.exe
%System%\jqibexyu.exe
%System%\khatarnak.exe
%System%\kjtydacq.exe
%System%\kkztlgsfezcyaqo.exe
%System%\kwmeewmdxawdc.exe
%System%\ldfnsqhjno.exe
%System%\lgvista.exe
%System%\lkzhnnhz.exe
%System%\lluusqjtczkbk.exe
%System%\logoneui.exe
%System%\lpfbpxvh.exe
%System%\ltaxjqlc.exe
%System%\mkmjyiyjgp.exe
%System%\mnmvntewfehgc.exe
%System%\msmsgs.exe
%System%\msrun32.exe
%System%\nauxsrhiocuxwme.exe
%System%\nscsmpkowd.exe
%System%\nssiaios.exe
%System%\okbyoljk.exe
%System%\orksoqjtdrljicj.exe
%System%\oryrmqww.exe
%System%\otjkypvllc.exe
%System%\pgwjzfbcgsjon.exe
%System%\pjjgkjvoejwrqcf.exe
%System%\pprzlbtjitftoqd.exe
%System%\ptsdsqwusukng.exe
%System%\qbkevcmctz.exe
%System%\qxikipemtdcgclb.exe
%System%\qylftctluoxmv.exe
%System%\rafqoikstgjbaul.exe
%System%\rbszvnzfzjdezjd.exe
%System%\regsvr.exe
%System%\rfnyoenfap.exe
%System%\sqmwwygk.exe
%System%\srdbnsdwfgslj.exe
%System%\ssvichosst.exe
%System%\svrchost.exe
%System%\tbpujhhqzi.exe
%System%\tdbsexni.exe
%System%\tiaexdhi.exe
%System%\tiusdjjggruigkv.exe
%System%\tqcvdnxqpcicjhv.exe
%System%\unvapudali.exe
%System%\uxvprsrd.exe
%System%\uzghmkaqzpmzlmz.exe
%System%\vjxykqxkbo.exe
%System%\vtrrqwup.exe
%System%\werjnvhfybgfcjr.exe
%System%\winhelp.exe
%System%\wodnebzd.exe
%System%\wzvzozxzdlhfo.exe
%System%\xadmjoyb.exe
%System%\yihlqokxgiukjoe.exe
%System%\ylymwgku.exe
Notes:
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %Programs% is a variable that refers to the file system directory that contains the user's program groups. A typical path is C:\Documents and Settings\[UserName]\Start Menu\Programs.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).