Threat Search: 

ThreatExpert's Statistics for Worm.Win32.VB.ck [Kaspersky Lab]:

Worm.Win32.VB.ck [Kaspersky Lab] is also known as:
Threat AliasNumber of Incidents
W32/YahLover.worm [McAfee]2,247
W32.SillyFDC [Symantec]1,343
WORM_SOHANAD.FI [Trend Micro]1,225
W32.SillyDC [Symantec]1,020
WORM_VB.FQO [Trend Micro]1,020
Worm.VB.GUE [PC Tools]245
Worm.VB.FWG [PC Tools]81
WORM_VB.EIQ [Trend Micro]81
WORM_VB.DHT [Trend Micro]19
Bloodhound.Unknown [Symantec]11
Worm.VB.ZAR [PC Tools]8
Trojan Horse [Symantec]7
Worm.VB!sd5 [PC Tools]7
WORM_VB.ESA [Trend Micro]7
Generic Downloader.s [McAfee]6
W32/Rontokbro.gen@MM [McAfee]6
W32/Generic.d [McAfee]5
W32/YahLover.worm.gen [McAfee]5
Worm.VB.EVN [PC Tools]5
WORM_VB.MIC [Trend Micro]5
Trojan.Killav.AU [PC Tools]4
Worm.Win32.VB.cj [Ikarus]4
WORM_SOHANAD.CV [Trend Micro]4
W32.Imaut.AA [Symantec]3
W32/Sohana-G [Sophos]3
Worm.VB.FQN [PC Tools]3
Generic.dx [McAfee]2
Mal/Behav-054, Mal/Behav-043 [Sophos]2
Trojan-Proxy.Win32.Wopla.ag [Kaspersky Lab]2
W32.Imaut [Symantec]2
W32/Sohana-BK [Sophos]2
Worm.Agent.CPBO [PC Tools]2
Worm.VB.AATR [PC Tools]2
Worm.VB.GKY1 [PC Tools]2
Worm.VB.ZTD [PC Tools]2
Worm.Win32.VB [Ikarus]2
Worm:Win32/VB.EF [Microsoft]2
Backdoor.Win32.Agent.alm [Kaspersky Lab]1
Backdoor.Win32.Haxdoor.gh [Kaspersky Lab]1
Backdoor.Win32.IRCBot.acx [Kaspersky Lab]1
Backdoor.Win32.SdBot.aad [Kaspersky Lab]1
Backdoor.Win32.Small.qd [Kaspersky Lab]1
Downloader [Symantec]1
Email-Worm.Win32.Warezov.qh [Kaspersky Lab]1
Email-Worm.Win32.Zhelatin.gn [Kaspersky Lab]1
Mal/Behav-043, Mal/Behav-054 [Sophos]1
Mal/Generic-A [Sophos]1
Mal/VB-F, Mal/StartP-A [Sophos]1
New Malware.iu [McAfee]1
not-a-virus:AdTool.Win32.MyWebSearch.aw [Kaspersky Lab]1
not-a-virus:Porn-Dialer.Win32.GBDialer.i [Kaspersky Lab]1
not-virus:Hoax.Win32.Renos.hv [Kaspersky Lab]1
Packed.Win32.PolyCrypt.d [Kaspersky Lab]1
PE_SALITY.AS [Trend Micro]1
Trojan.Win32.Agent.aoy [Kaspersky Lab]1
Trojan.Win32.Agent.aph [Kaspersky Lab]1
Trojan.Win32.Agent.avd [Kaspersky Lab]1
Trojan.Win32.Agent.bnj [Kaspersky Lab]1
Trojan.Win32.BHO.ab [Kaspersky Lab]1
Trojan.Win32.BHO.bb [Kaspersky Lab]1
Trojan.Win32.Dialer.pn [Kaspersky Lab]1
Trojan.Win32.DNSChanger.hd [Kaspersky Lab]1
Trojan.Win32.Obfuscated.gp [Kaspersky Lab]1
Trojan.Win32.Pakes.be [Kaspersky Lab]1
Trojan.Win32.Qhost.it [Kaspersky Lab]1
Trojan.Win32.Small.ni [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.aii [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.bek [Kaspersky Lab]1
Trojan-Downloader.Win32.Agent.brk [Kaspersky Lab]1
Trojan-Downloader.Win32.Injecter.f [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.ehe [Kaspersky Lab]1
Trojan-Downloader.Win32.Small.faf [Kaspersky Lab]1
Trojan-Dropper.Win32.Small.ayg [Kaspersky Lab]1
Trojan-Dropper.Win32.VB.lu [Kaspersky Lab]1
Trojan-Proxy.Win32.Dlena.bo [Kaspersky Lab]1
Trojan-Proxy.Win32.Xorpix.ax [Kaspersky Lab]1
Trojan-PSW.Win32.OnLineGames.acz [Kaspersky Lab]1
Trojan-Spy.Win32.Bancos.aam [Kaspersky Lab]1
Trojan-Spy.Win32.Webmoner.cg [Kaspersky Lab]1
Virus.Win32.AutoRun.ji [Kaspersky Lab]1
Virus:Win32/Sality.R [Microsoft]1
W32.Imaut.J [Symantec]1
W32.Sality.U [Symantec]1
W32/Kely.worm.gen [McAfee]1
W32/Sality.x [McAfee]1
W32/Sality-AA [Sophos]1
W32/VBAut-B [Sophos]1
W32/Virut.remnants [McAfee]1
Win32.Sality.X [PC Tools]1
Win32/Xema.worm.109056.E [AhnLab]1
Win32/Xema.worm.208896.D [AhnLab]1
Win32/Xema.worm.208896.F [AhnLab]1
Worm.IM.Sohanad [PC Tools]1
Worm.Sohanad.H [PC Tools]1
Worm.VB.EBCH [PC Tools]1
Worm.VB.ECDD [PC Tools]1
Worm.VB.EPR [PC Tools]1
Worm.VB.EXY [PC Tools]1
Worm.VB.FIN [PC Tools]1
Worm.VB.FMY [PC Tools]1

Worm.Win32.VB.ck [Kaspersky Lab] has the following possible country of origin:
OriginNumber of Incidents
United Kingdom2,265

Worm.Win32.VB.ck [Kaspersky Lab] is known to be created as:
%AllUsersProfile%\desktop.exe
%AllUsersProfile%\documents.exe
%AllUsersProfile%\drm.exe
%AllUsersProfile%\drm\drm.exe
%AllUsersProfile%\favorites.exe
%AllUsersProfile%\templates.exe
%CommonAppData%\microsoft.exe
%CommonAppData%\microsoft\crypto.exe
%CommonAppData%\microsoft\crypto\crypto.exe
%CommonAppData%\microsoft\crypto\dss.exe
%CommonAppData%\microsoft\crypto\dss\dss.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys.exe
%CommonAppData%\microsoft\crypto\dss\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\machinekeys\machinekeys.exe
%CommonAppData%\microsoft\crypto\rsa\rsa.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18.exe
%CommonAppData%\microsoft\crypto\rsa\s-1-5-18\s-1-5-18.exe
%CommonAppData%\microsoft\microsoft.exe
%CommonAppData%\microsoft\network.exe
%CommonAppData%\microsoft\network\connections.exe
%CommonAppData%\microsoft\network\connections\cm.exe
%CommonAppData%\microsoft\network\connections\cm\cm.exe
%CommonAppData%\microsoft\network\connections\connections.exe
%CommonAppData%\microsoft\network\connections\pbk.exe
%CommonAppData%\microsoft\network\connections\pbk\pbk.exe
%CommonAppData%\microsoft\network\network.exe
%CommonAppData%\vmware.exe
%CommonAppData%\vmware\vmware.exe
%CommonDesktopDir%\desktop.exe
%CommonDocuments%\documents.exe
%CommonDocuments%\my music\sample playlists\00090beb.exe
%CommonFavorites%\favorites.exe
%CommonPrograms%\accessories.exe
%CommonPrograms%\accessories\accessibility.exe
%CommonPrograms%\accessories\accessibility\accessibility.exe
%CommonPrograms%\accessories\accessories.exe
%CommonPrograms%\accessories\communications.exe
%CommonPrograms%\accessories\communications\communications.exe
%CommonPrograms%\accessories\entertainment.exe
%CommonPrograms%\accessories\entertainment\entertainment.exe
%CommonPrograms%\programs.exe
%CommonPrograms%\startup.exe
%CommonPrograms%\startup\msconfig.exe
%CommonPrograms%\startup\msconfigg.exe
%CommonPrograms%\startup\startup.exe
%CommonStartMenu%\programs.exe
%CommonTemplates%\templates.exe
%Profiles%\default user\application data\microsoft.exe
%Profiles%\default user\application data\microsoft\microsoft.exe
%Profiles%\default user\cookies.exe
%Profiles%\default user\cookies\cookies.exe
%Profiles%\default user\desktop.exe
%Profiles%\default user\desktop\desktop.exe
%Profiles%\default user\favorites.exe
%Profiles%\default user\favorites\favorites.exe
%Profiles%\default user\local settings\history.exe
%Profiles%\default user\local settings\history\history.exe
%Profiles%\default user\local settings\history\history.ie5.exe
%Profiles%\default user\local settings\temp.exe
%Profiles%\default user\local settings\temp\temp.exe
%Profiles%\default user\nethood\nethood.exe
%Profiles%\default user\printhood\printhood.exe
%Profiles%\default user\recent\recent.exe
%Profiles%\default user\sendto\sendto.exe
%Profiles%\default user\start menu\programs\programs.exe
%Profiles%\default user\start menu\programs\startup.exe
%Profiles%\default user\start menu\programs\startup\startup.exe
%Profiles%\default user\templates\templates.exe
%Profiles%\localservice\application data\flexiblesoft.exe
%Profiles%\localservice\application data\microsoft\microsoft.exe
%Profiles%\localservice\cookies.exe
%Profiles%\localservice\cookies\cookies.exe
%Profiles%\localservice\local settings\history.exe
%Profiles%\localservice\local settings\history\history.exe
%Profiles%\localservice\local settings\history\history.ie5.exe
%Profiles%\localservice\local settings\temp.exe
%Profiles%\localservice\local settings\temp\temp.exe
%Profiles%\localservice\localservice.exe
%Profiles%\networkservice\application data\flexiblesoft.exe
%Profiles%\networkservice\application data\microsoft.exe
%Profiles%\networkservice\cookies.exe
%Profiles%\networkservice\local settings\history.exe
%Profiles%\networkservice\local settings\history\history.ie5.exe
%Windir%\csrss.exe
%Windir%\lsass.exe
%Windir%\lsasss.exe
%Windir%\svchost.exe
%Windir%\system\lsass.exe
%Windir%\system\lsasss.exe
%Windir%\windows.exe
c:\auto.exe
c:\boot.exe
c:\folder.exe
c:\inetpub\inetpub.exe
Notes:
  • %AllUsersProfile% is a variable that specifies the all users' profile folder. By default, this is C:\Documents and Settings\All Users (Windows NT/2000/XP).
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonDesktopDir% is a variable that refers to the file system directory that contains files and folders that appear on the desktop for all users. A typical path is C:\Documents and Settings\All Users\Desktop (Windows NT/2000/XP).
  • %CommonDocuments% is a variable that refers to the file system directory that contains documents that are common to all users. A typical paths is C:\Documents and Settings\All Users\Documents.
  • %CommonFavorites% is a variable that refers to the file system directory that serves as a common repository for all users' favorite items. A typical path is C:\Documents and Settings\All Users\Favorites (Windows NT/2000/XP).
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %CommonStartMenu% is a variable that refers to the file system directory that contains the programs and folders that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu (Windows NT/2000/XP).
  • %CommonTemplates% is a variable that refers to the file system directory that contains the templates that are available to all users. A typical path is C:\Documents and Settings\All Users\Templates (Windows NT/2000/XP).
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.