Threat Search: 

ThreatExpert's Statistics for Packed.Generic.232 [Symantec]:

Packed.Generic.232 [Symantec] is also known as:
Threat AliasNumber of Incidents
Trojan-Spy.Win32.Zbot.gen [Kaspersky Lab]611
Mal/Zbot-O [Sophos]424
HeurEngine.MaliciousPacker [PC Tools]305
PWS:Win32/Zbot.gen!R [Microsoft]259
PWS:Win32/Zbot.PG [Microsoft]247
Spy-Agent.bw.gen.e [McAfee]180
Trojan-Spy.Win32.Zbot [Ikarus]145
PWS:Win32/Zbot.gen!W [Microsoft]95
Mal/Behav-353, Mal/EncPk-LE [Sophos]94
Spy-Agent.eh [McAfee]55
Mal/EncPk-LE, Mal/Behav-353 [Sophos]46
BackDoor-DKI.gen.bf [McAfee]40
Mal/Zbot-O, Mal/EncPk-CZ [Sophos]37
PWS:Win32/Zbot.M [Microsoft]31
Win32/IRCBot.worm.variant [AhnLab]18
Generic PWS.cf [McAfee]15
Mal/Generic-A [Sophos]10
Mal/EncPk-KD [Sophos]7
PWS.Win32 [Ikarus]7
PWS-Zbot.gen.p [McAfee]6
Trojan-Spy.Win32.Zbot.wtb [Kaspersky Lab]6
Generic PWS.y!dp [McAfee]5
Trojan-Banker.Win32.Bancos [Ikarus]5
Mal/EncPk-LE [Sophos]4
Mal/Generic-A, Mal/Zbot-O [Sophos]4
PWS:Win32/Zbot.J [Microsoft]4
PWS-Zbot [McAfee]4
Trojan-Spy.Win32.Zbot.xud [Kaspersky Lab]4
Win32/Ircbot.worm.variant [AhnLab]4
Win-Trojan/Zbot.92160 [AhnLab]4
Generic PWS.y!rt [McAfee]3
Win-Trojan/Zbot.62976.X [AhnLab]3
Mal/EncPk-LE, Mal/Zbot-R, Mal/Behav-353 [Sophos]2
Mal/Zbot-O, Mal/Zbot-I, Mal/EncPk-CZ [Sophos]2
PWS:Win32/Zbot.I [Microsoft]2
PWS:Win32/Zbot.ZJ [Microsoft]2
PWS-Banker!yn [McAfee]2
Troj/QakBot-H [Sophos]2
Trojan-Dropper.Win32.Zbot.i [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.aadz [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.aaec [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.aajs [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.xdk [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.xep [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.xet [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.xez [Kaspersky Lab]2
Win-Trojan/Injector.95744 [AhnLab]2
Win-Trojan/Zbot.62976.S [AhnLab]2
Win-Trojan/Zbot.62976.U [AhnLab]2
Win-Trojan/Zbot.63488.Z [AhnLab]2
Win-Trojan/Zbot.67584.O [AhnLab]2
Win-Trojan/Zbot.81920.C [AhnLab]2
Win-Trojan/Zbot.90624.D [AhnLab]2
Win-Trojan/ZBot.95744 [AhnLab]2
Generic PWS.y!bbm [McAfee]1
Generic PWS.y!bhu [McAfee]1
Generic PWS.y!bkt [McAfee]1
Generic PWS.y!dh [McAfee]1
Generic PWS.y!dk [McAfee]1
Generic PWS.y!fp [McAfee]1
Generic PWS.y!fr [McAfee]1
Generic PWS.y!pr [McAfee]1
Generic PWS.y!rf [McAfee]1
Generic PWS.y!tx [McAfee]1
Generic PWS.y!uj [McAfee]1
Mal/Behav-353 [Sophos]1
Mal/Generic-A, Mal/Behav-353, Mal/EncPk-LE [Sophos]1
PWS:Win32/Zbot.PM [Microsoft]1
PWS-Banker!wn [McAfee]1
Troj/Farfli-Gen, Mal/EncPk-LE [Sophos]1
Troj/Spy-CU [Sophos]1
Troj/Zbot-GH [Sophos]1
Trojan-Banker.Win32.Bancos.ezp [Kaspersky Lab]1
Trojan-Banker.Win32.Bancos.fed [Kaspersky Lab]1
Trojan-Banker.Win32.Bancos.fgb [Kaspersky Lab]1
Trojan-Dropper.Win32.Zbot [Ikarus]1
Trojan-Spy.Win32.Zbot.aadr [Kaspersky Lab]1
Trojan-Spy.Win32.Zbot.aafh [Kaspersky Lab]1
Trojan-Spy.Win32.Zbot.yyj [Kaspersky Lab]1
Trojan-Spy.Zbot [Ikarus]1
Trojan-Spy.Zbot.YETH [PC Tools]1
Win-Trojan/Malware.89088.K [AhnLab]1
Win-Trojan/Zbot.61952.J [AhnLab]1
Win-Trojan/Zbot.62464.AD [AhnLab]1
Win-Trojan/ZBot.62464.C [AhnLab]1
Win-Trojan/Zbot.62976.AI [AhnLab]1
Win-Trojan/Zbot.63488.AN [AhnLab]1
Win-Trojan/ZBot.63488.B [AhnLab]1
Win-Trojan/Zbot.63488.Q [AhnLab]1
Win-Trojan/Zbot.63488.Y [AhnLab]1
Win-Trojan/ZBot.64000.I [AhnLab]1
Win-Trojan/ZBot.64000.O [AhnLab]1
Win-Trojan/Zbot.64000.X [AhnLab]1
Win-Trojan/Zbot.81408.N [AhnLab]1
Win-Trojan/Zbot.83456.AJ [AhnLab]1
Win-Trojan/Zbot.83456.E [AhnLab]1
Win-Trojan/ZBot.88576.H [AhnLab]1
Win-Trojan/Zbot.89088.Q [AhnLab]1
Win-Trojan/Zbot.89088.Z [AhnLab]1
Win-Trojan/ZBot.89600.K [AhnLab]1

Packed.Generic.232 [Symantec] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation5
Italy1
Spain1
Ukraine1

Packed.Generic.232 [Symantec] is known to be created as:
%System%\1.exe
%System%\sdra64.exe
%Temp%\0.exe
%Temp%\1111.exe
%Temp%\2.exe
%Temp%\283899.exe
%Temp%\assist.exe
%Temp%\bot.exe
%Temp%\crypted.exe
%Temp%\fah_.exe
%Temp%\filetransfer.exe
%Temp%\q2.exe
%Temp%\services.exe
%Temp%\tmp.exe
%Windir%\crypted.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.