Home Malware Programs Spyware Spyware.Zbot.out

Spyware.Zbot.out

Posted: August 1, 2012

Threat Metric

Ranking: 3,712
Threat Level: 1/10
Infected PCs: 13,404
First Seen: August 1, 2012
Last Seen: October 17, 2023
OS(es) Affected: Windows

Spyware.Zbot.out is a member of the Zeus family of Trojans, a kit-produced series of banking Trojans that steal bank account information and lower your computer's overall security (particularly with regards to your firewall and web browser). Spyware.Zbot.out attacks have been confirmed in the wild as of late July 2012, and should be considered ongoing threats to your computer, bank account and related assets. Because Spyware.Zbot.out, unlike some members of the Zeus Trojan family, have been noted for rootkit-like behaviors that result in the infection of normal files and their reinstallation after attempted deletion, SpywareRemove.com malware researchers recommend that you scan your computer with standard anti-rootkit techniques and appropriately advanced anti-malware programs to delete all of Spyware.Zbot.out's components, including those that might reinstall Spyware.Zbot.out, as thoroughly as possible.

The Innocuous Places Where Spyware.Zbot.out Likes to Lay Low

While many members of the Zeus or Zbot family are noted for creating independent files, Spyware.Zbot.out has been found to use host files on the infected PC to store its code. This can occur in multiple files simultaneously in a range of different locations. So far, SpywareRemove.com malware researchers have observed Spyware.Zbot.out infections in the following areas:

  • Adobe Dreamweaver software.
  • Windows System Restore files.

Some anti-malware programs may also detect false positives for Spyware.Zbot.out and similar PC threats, based on heuristic detection methods that trigger off of benign files and programs. So far, SpywareRemove.com malware researchers have only seen one trigger for these false positives: Toshiba DVD Player-related software. Under most circumstances, victims of false alerts for Spyware.Zbot.out can set their anti-malware scanner to ignore this false positive and continue on about their business. However, you may wish to double-check these files with a second brand of anti-malware scanner to verify that this detection of Spyware.Zbot.out actually is a false positive and not a genuine alert.

The Trouble in Noticing Spyware.Zbot.out's Heist Attempts

Spyware.Zbot.out may cause minor system slowdowns, but these and warnings from your anti-malware products may be the only symptoms that Spyware.Zbot.out displays. As spyware that's designed to steal bank-related information, Spyware.Zbot.out may:

  • Prevent alerts for unsafe web content from displaying.
  • Prevent firewall applications from running.
  • Disable anti-phishing protection for Internet Explorer and other web browsers.
  • Steal various types of confidential information from password fields, cookies, certificates, Windows e-mail clients and FTP programs.
  • Create a backdoor that allows criminals to control your PC from a remote server.

Even though the above attacks are high-level threats to your computer's privacy and safety, SpywareRemove.com malware analysts have found few to no symptoms associated with them inherently. Detecting and removing Spyware.Zbot.out should, in all normal scenarios, use anti-malware programs that are designed for such purposes.

Loading...