Results 1 to 3 of 3

Thread: Does spybot detect Zeus and its varients?

  1. #1
    Junior Member
    Join Date
    Nov 2010
    Posts
    4

    Exclamation Does spybot detect Zeus and its varients?

    Hi....I have read that some anti-virus programs cannot detect what I think is called Zeus in some of it's varients. News items on the web state that this potentially undetectable malware is widespread and can steal personal data. Can spybot detect known Zeus varients? can it detect unknown varients? which anti virus scanners can?
    Aforementioned news items do not spell out which-if any-antivirus programs are effective. This appears to make a mockery of on-line security....if there is a reliable means of detecting zeus surely the methods should be shared with all antivirus /antimalware distributers.
    It would be interesting to know what the estimated percentage of infected computers is, so at least one could guess the chances of ones own pc being infected.
    Thanks for reading this.
    I have spent some time online looking for the answers.
    Last edited by tashi; 2010-11-04 at 04:37. Reason: Split off from security alerts ;-)

  2. #2
    Senior Member Yodama's Avatar
    Join Date
    Oct 2005
    Location
    Buchenheim
    Posts
    1,110

    Default

    Current variants of Zeus also known as ZBot use Rootkit functions to hide and protect itself, this makes it very hard to counter it on an active system.

    The best way to find and remove ZBot variants is to use an offline scanner, i.e. boot with another Operating System for instance a BootCD since these cannot be affected by the rootkit functions. Spybot S&D is also available on a BootCD.

    Spybot S&D does have signatures for detection of ZBot, but we cannot guarantee that all variants are covered since ZBot is very active and its developers and deployers constantly try to enhance ZBot with new variants.
    So depending on the actual infection it may be necessary to gather information on the infected system and release custom detection rules.

    Basically no vendor of security software can claim to remove all variants of ZBot, anyone claiming this would be lying.
    born in the shadow to die in the shadow, that is the fate of the shinobi

    Spybot S&D Downloads

    Please help us improve Spybot and download our distributed testing client.

  3. #3
    Junior Member
    Join Date
    Nov 2010
    Posts
    4

    Default

    Thanks Yodama for your reply it has been very informative. I will try offline scanning. Cheers!

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •