Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Jun 11, 2015

Microsoft security software detects and removes this threat.

This family of trojans can steal your personal and financial information and give a hacker access and control of your PC. They can also lower your Internet browser security and turn off your firewall.

We have seen these threats download other malware, including Trojan:Win32/Crilock.A and Trojan:Win32/Necurs. Crilock is a ransomware family that can encrypt the files on your PC and then demand money to unlock them. Necurs is family of malware that can turn off your security software and redirect your web browser.

Win32/Zbot can be installed on your PC via spam emails and hacked websites, or packaged with other malware families.

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Jul 05, 2015

Microsoft security software detects and removes this threat.

This family of trojans can steal your personal and financial information, and give a malicious hacker access and control of your PC. They can also lower your Internet browser security and turn off your firewall.

We have seen these threats download other malware, including threats from the Win32/Crilock and Win32/Necurs families. Crilock ransomware can encrypts your files and then demand money to unlock them. Necurs malware can disable your security software and redirect your web browser.

Win32/Zbot can be installed on your PC via spam emails and hacked websites, or packaged with other malware families.

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Sep 14, 2014

Microsoft security software detects and removes this threat.

This threat can steal your personal and financial information. It can also give a hacker access and control of your PC.

The Win32/Zbot family description has more information. 

Alert level: severe
Updated on Sep 14, 2014

Windows Defender detects and removes this threat.

See the Win32/Zbot family description for more information.

Alert level: severe
Updated on Sep 04, 2013
Alert level: severe
Updated on Aug 27, 2010
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Jan 06, 2011
Alert level: severe
Updated on Jun 07, 2010
Alert level: severe
Updated on Dec 14, 2016
Alert level: severe
Updated on Sep 14, 2014
Microsoft security software detects and removes this threat.
 
This threat is a generic detection for password stealer and remote access trojans. These trojans can steal your sensitive information, download and run files, and give a malicious hacker access and control of your PC.

They are part of the Win32/Zbot family.
 
These threats are usually installed by other malware and via infected removable drives or spam emails.
 
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Zbot.CX is a password stealing trojan with remote access functionality. This trojan may inject code into running processes and download files from a predefined Web site. Win32/Zbot.CX may have been distributed in a spam e-mail message.
Alert level: severe
Updated on Apr 11, 2011
PWS:Win32/Zbot.AZ is a password stealing trojan. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Apr 11, 2011
PWS:Win32/Zbot.gen!Z is a heuristic detection for files that exhibit suspicious characteristics and behaviors.
 
Should you have this detection reported, and you are uncertain as to the source or integrity of the file reported on, please submit the file to us for further analysis.
Alert level: severe
Updated on May 17, 2010
PWS:Win32/Zbot.gen!E is a password-stealing trojan that contains limited backdoor functionality. It is capable of stealing login credentials for particular sites, cached passwords, and information contained in certificates and cookies.
Alert level: severe
Updated on Sep 14, 2014

Microsoft security software detects and removes this threat.

This threat can steal your personal and financial information. It can also give a hacker access and control of your PC.

It is usually installed by other malware, or via links to hacked or compromised websites sent in spam emails.

The Win32/Zbot family description has more information. 

Alert level: severe
Updated on Jun 10, 2013

TrojanDownloader:Win32/Zbot.I is a trojan that silently downloads and installs other programs without consent. This could include the installation of additional malware or malware components to an affected computer.

See the Zbot family description for more information.

Alert level: severe
Updated on Apr 11, 2011
PWS:Win32/Zbot.XD is a password-stealing trojan that contains limited backdoor functionality. It is capable of stealing login credentials for certain sites, cached passwords, and information contained in certificates and cookies. It is often distributed as an attachment to spam e-mail messages.
Alert level: severe
Updated on Apr 11, 2011
PWS:Win32/Zbot.PI is a trojan password stealer that can may bypass installed firewall applications to send captured passwords to an attacker.
Alert level: severe
Updated on Apr 11, 2011
Virus:Win32/Zbot.C is a detection for Win32 executables infected by particular variants of the PWS:Win32/Zbot family of bots. Typically, the payload of these infected files is to download additional malware onto the system.
Alert level: severe