Skip to main content
Skip to main content
Published Apr 27, 2009 | Updated Sep 15, 2017

PWS:Win32/Zbot.J

Detected by Microsoft Defender Antivirus

Aliases: Trojan-Spy.Win32.Zbot.gen (Kaspersky) Mal/EncPk-CZ (Sophos) Trojan.Spy.ZBot.RL (BitDefender)

Summary

PWS:Win32/Zbot.J is a password stealing trojan that has been observed in the wild targeting Bank of America websites. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
 
Win32/Zbot has been observed being distributed in the wild attached to e-mail that spoofs UPS (United Parcel Service of America).
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, see http://www.microsoft.com/protect/computer/viruses/vista.mspx.
Follow us