Threat Database Trojans PWS:Win32/Zbot.gen!AF

PWS:Win32/Zbot.gen!AF

By ZulaZuza in Trojans

PWS:Win32/Zbot.gen!AF is a malicious Trojan that is a part of a ACH debit transfer malware spam email that attacks Automated Clearing House (ACH), the e-network in USA that processes financial transactions. The spam emails with different subject lines that are associated with ACH are sent from various spoofed IDs. All the fake email messages contain a malicious link, which allegedly brings the extra information of the transaction. If the affected computer user clicks on the infected link, his/her web browser strives to access malicious websites that ask him/her to immediately download and install Adobe Flash Player. These websites download the Adobe website that serves the update. Sadly, the download offered in a file named 'flash.exe,' installs PWS:Win32/Zbot.gen!AF. If a PC system is affected by PWS:Win32/Zbot.gen!AF, it attempts to connect to the Internet Protocol address 64.252.17.231 on the 11760 port, possibly for reporting its author that the corrupted computer system has been taken over. If you get the unwanted email linked to ACH that includes a web-link, do not click on it and run the infected file in order to keep your PC safe from PWS:Win32/Zbot.gen!AF.

Trending

Most Viewed

Loading...