Severity: High
This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.
Description
This signature detects attempts to send suspicious HTTP activity indicative of the ZLob Trojan.
Additional Information
Trojan.Zlob is a back door Trojan that allows the remote attacker to perform various malicious actions on the compromised computer.
Response
The following instructions pertain to all current and recent Symantec antivirus products, including the Symantec AntiVirus and Norton AntiVirus product lines.
1. Disable System Restore (Windows Me/XP).
2. Update the virus definitions.
3. Run a full system scan.
4. Delete any values added to the registry.