Threat Search: 

ThreatExpert's Statistics for TSPY_ZBOT.OJ [Trend Micro]:

TSPY_ZBOT.OJ [Trend Micro] is also known as:
Threat AliasNumber of Incidents
Spy-Agent.bw [McAfee]10
Win32/IRCBot.worm.variant [AhnLab]8
Trojan.Wsnpoem [Symantec]6
Troj/Agent-HFZ [Sophos]4
Troj/Spy-AS [Sophos]4
Trojan:Win32/Zbot.AR [Microsoft]4
Trojan-Spy.Win32.Zbot.dip [Ikarus]4
Trojan-Spy.Win32.Zbot.dip [Kaspersky Lab]4
PWS:Win32/Zbot.gen!G [Microsoft]3
Backdoor.Paproxy [Symantec]2
Backdoor.Trojan [Symantec]2
Infostealer.Banker.C [Symantec]2
Mal/EncPk-CZ [Sophos]2
NTRootKit-H [McAfee]2
PWS:Win32/Zbot.LS [Microsoft]2
Trojan.Agent [Ikarus]2
Trojan:Win32/Zbot.AT [Microsoft]2
Trojan-Spy.Win32.Zbot.dji [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.dkf [Ikarus]2
Trojan-Spy.Win32.Zbot.dkf [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.dqu [Kaspersky Lab]2
Trojan-Spy.Win32.Zbot.dri [Kaspersky Lab]2
Win32.Outbreak.UPSRechnung [Ikarus]2
Backdoor.Paproxy!sd6 [PC Tools]1
Backdoor.Win32.Kbot.fg [Ikarus]1
Backdoor.Win32.Kbot.fg [Kaspersky Lab]1
Backdoor:Win32/Phdet.gen!A [Microsoft]1
Generic BackDoor [McAfee]1
Mal/EncPk-EI [Sophos]1
New Malware.ix [McAfee]1
Packed.Generic.187 [Symantec]1
Troj/Agent-HJG [Sophos]1
Troj/Agent-HJN [Sophos]1
Troj/Spy-AT [Sophos]1
Trojan-Spy.Zbot!ct [PC Tools]1
Worm.Socks!sd6 [PC Tools]1
Worm.Win32.Socks.agw [Ikarus]1
Worm.Win32.Socks.agw [Kaspersky Lab]1

TSPY_ZBOT.OJ [Trend Micro] has the following possible country of origin:
OriginNumber of Incidents
Russian Federation7

TSPY_ZBOT.OJ [Trend Micro] is known to be created as:
%System%\mssrv32.exe
%System%\ntos.exe
Note: %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).