Trojan Win32/Spy.Zbot.YW Troubles
- Considerably consumed CPU.
- Snail-like PC performance.
- Error message would be triggered to cause malfunction/dysfunction.
- Freezes/crash would happen on both computer and browsers.
- Additional infections or unknown items can be detected soon after its infiltration.
Not all the above listed troubles will be detected by a victim.
It depends on the level of privileges. Win32/Spy.Zbot.YW will inject itself into one of two services. If the account has administrative privileges, the threat injects itself into the
winlogon.exe service. If not, it attempts to do the same with the explorer.exe service. The threat also injects code into
svchost.exe service, which it later uses when stealing banking information. There more privileges the Trojan gets, the more services will be affected to fall into its use, and the more troubles will be incurred.
Where Win32/Spy.Zbot.YW Comes from?
Q: Supposedly the alert about Win32/Spy.Zbot.yw came up once the computer was turned on and Outlook opened and nothing else was done. Then where the infection would have come from if not from some clickable link in an email or a webpage?