Home Malware Programs Trojans Trojan.Zbot!gen13

Trojan.Zbot!gen13

Posted: October 20, 2010

Trojan.Zbot!gen13 is a malicious Trojan which drops corrupt files on a compromised computer. Trojan.Zbot!gen13 is designed to open a large security loophole through which hundreds of malicious adware and spyware can be piped to your machine. Trojan.Zbot!gen13 opens a backdoor that allows the remote attacker to get the full control over the infected computer and this places any financial or banking information stored on your computer in severe jeopardy and represents a serious security risk. Remove Trojan.Zbot!gen13 before it steals your money.

Aliases

Downloader-CEW.g (McAfee)
Mal/Zbot-AN (Sophos)
TrojanDownloader:Win32/Waledac.C (Microsoft)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\017503.exe
    2 %Programs%\Security Tool.lnk
    3 %Windir%\Temp\_ex-08.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Loading...