Spyware/Zbot.220B
| Overall Risk Rating: Medium | Distribution Potential: Medium | Damage Potential: Medium |
| In The Wild: Yes | Vulnerability: None | Discovered: 2010-02-19 |
| Size: 160,256 bytes | Language: English | Compression: None |
| Port(s): None | Payload: None | |
| Aliases: Generic PWS.y!bkq(McAfee),TROJ_ZBOT.BVO(Trendmicro) ,Mal/EncPk-KS(Sophos),Backdoor.Bot.109506(BitDefender),Trojan.Zbot-6317(ClamAV) | ||
| Affected Platforms: Windows NT, Windows Vista, Windows XP, Windows 2003, Windows 2000, Windows 95/98/ME | ||
This Spyware arrives in the affected system as dropped or downloaded file by other malwares or unsuspecting users,or junk email's attachment.
It drops a copy of itself in the Windows system folder and creates a folder with attributes set to System and Hidden to prevent users from discovering and removing its components. It modifies a registry entry to enable its automatic execution at every system reboot. It also injects itself into processes as part of its memory residency routine.This Spyware attempts to access a Web site to download file.It maybe steal sensitive online banking information.
SEARCH VIRUS
THREATS STATUS
Yellow:Internet threat activity is elevated. Many new threats are found in Web or Emails.
- 1. Virus/EicarTestFile.A
- 2. Trojan/Generic.B734
- 3. Trojan/GIF.IFrame.gen
- 4. Exploit/SWF.Flash.0BFD...
- 5. Spyware/NetPass.FFCE
- 6. Backdoor/ASP.Execmd.2F...
- 7. Adware/PopupURL.6D89
- 8. Adware/BDBar.7002
- 9. Trojan/Downloader.A3E6
- 10.Adware/CDNHelper
LATEST DEFINITIONS
- Malware definition: 1049.97
- Malicious sites: 1007.66
- Application control: 1000.29