Strong increase in the number of ZBot-D Trojan infections free RSS feed from Security Park
(08/08/2008)

MicroWorld has reported an alarming increase in the number of infections caused by the ZBot-D Trojan. The ZBot-D Trojan also known as ZBot, first surfaced in February, 2008 and mostly spreads via emails. It can effortlessly disable the firewall, steal financial data, and can also provide the hacker remote access to the infected system.

ZBot has been designed very craftily to perform multiple malicious activities at a given point of time. It can modify system files, create new system processes and automatically delete cookies in the Internet Explorer URL cache, so that key strokes are recorded and sent to the botnet herder, when unsuspecting users enter their passwords on online banking Web sites.

Once any user opens a ZBot infected email, a file named “ntos.exe” is automatically installed in the system folder that adds entries in the registry to automatically invoke the Trojan at the system start up. The Trojan then creates havoc in the system such as, forwarding your personal details to remote websites from where the details are used by hackers and botnet herders, which in turn is sold to criminals for financial gains.

It also starts flooding the inbox with loads of Spam and transforms the infected machine into a zombie computer, member of a botnet network. The zombie machines are then used for performing criminal activities like, Coordinated DDOS Attacks, Spamming etc. by the botnet controller.

Users with eScan installed on their systems and MailScan on their mail servers need not fear the ZBot Trojan as eScan and MailScan are equipped to identify and remove the ZBot Trojan effectively.

Related topics:  Internet and Web security   Virus, Worm, Email security, spyware and malware 


print versionPrint version | email this to a friendEmail to a friend | related articlesRelated articles


Data breaches: Trends, costs and best practices gives you all the latest information on securing personal and corporate data, key recommendations for immediate action to improve data security, and how to respond to data breaches.


Other Security news and resources


Security News Suppliers Directory Jobs forum Classifieds Knowledge base White papers Research library Security books Special reports Security interviews Security companies Security events Security links Security market

Product channels

Access Control Biometrics CCTV Intruder Alarms IT Security Manned Guarding Perimeter Protection Physical Security Remote Monitoring Security Services Fire, Health & Safety Other Security Products

IT Security white papers and research library

Access Control  Authentication  Data Management  Data Security  Digital Signatures  Email Security  Identity Management  Internet Security  Intrusion Prevention  Network Security  Remote access security  Security Management  Security Policies  Security Software  Security Threats  Virus Detection Software  Virus Protection  VPN  Vulnerability Assessment  Wireless Security 

Security books, guides, standards and toolkits

RFID and Smart Cards books, guides and reference documents  Biometric books, guides and reference documents  CCTV books, guides and reference documents  Intruder alarms and intrusion detection systems books, guides and reference documents  Monitoring and surveillance books, guides and reference documents  IT Governance, ISO 27001 ISO 17799 and BS 7799 toolkits  Fire, Health & Safety books, guides and reference documents





Ensure that you conduct an effective information security risk assessment that is in line with ISO 27001 by purchasing vsRisk™ Risk Assessment Tool

Need a
reference book?
Find it on Amazon:
Security books and magazines in association with Amazon.co.uk

Article search

Directory search


add your company
Google

ISO 18028 (Network Security Management)
Home | About us | Contact us | Submit an article | Advertise | Newsletter | RSS Newsfeed | SEARCH