









 |
W32/Zbot.ASI Trojan
| Name |
W32/Zbot.ASI Trojan |
| Aliases |
Trojan-Spy.Win32.Zbot.asi, Trojan.Dropper.RRQ |
| Discovered on |
March 31, 2008 |
Virus Information - W32/Zbot.ASI Trojan:
W32/Zbot.ASI is a trojan. The trojan will infect Windows systems.
Upon execution, the trojan creates a folder wsnpoem in the Windows System folder and drops the following files in it:
video.dll
audio.dll
The trojan modifies the registry at the following location to load itself during each login:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit
The trojan also exhibits some Rootkit Capabilities like hiding files and processes.

|