Threat Database Trojans Trojan.Spy.Banker.VCM

Trojan.Spy.Banker.VCM

By CagedTech in Trojans

Threat Scorecard

Ranking: 11,349
Threat Level: 80 % (High)
Infected Computers: 11,251
First Seen: May 7, 2013
Last Seen: September 3, 2023
OS(es) Affected: Windows

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Ikarus Win32.SuspectCrc
AntiVir TR/Graftor.36646
Comodo TrojWare.Win32.TrojanDownloader.Dadobra.~JH9
BitDefender Gen:Variant.Zusy.12143
eSafe Suspicious File
McAfee Artemis!6BD864794F9C
Panda Trj/DataRecovery.A
AVG PSW.Banker6.AHNA
Fortinet W32/Banker.YLX!tr
Ikarus Trojan.Hijacker
AhnLab-V3 Trojan/Win32.Hijacker
Microsoft TrojanSpy:Win32/Banker.VCM
AntiVir TR/Hijacker.Gen
DrWeb Trojan.DownLoad3.16249
Comodo UnclassifiedMalware

SpyHunter Detects & Remove Trojan.Spy.Banker.VCM

File System Details

Trojan.Spy.Banker.VCM may create the following file(s):
# File Name MD5 Detections
1. CortanaPTBR.dll 5a0639bcf2df55d4171845bbaba3ee80 73
2. CortanaPTBR.dll 05055b03efa216e8542b70571973b12c 33
3. tHov8F2.cpl dec4c99540599f9a7c6ad500ff7c2d8a 25
4. CortanaPTBR.dll c1998df193d5b5258c150afa0cef5337 7
5. IFrameDynamic.dll e17b47cb66f255ec68b62a77dc9c5b73 7
6. IFrameDynamic.dll 90bb77c96238cc27fcf2e43dc6e0a6bb 5
7. CortanaPTBR.dll 9b69c640aa7e93862c5c0010f12ef632 5
8. iOSPhoneProtect.dll e5e71f523e6675255e63d23a78a4e3a0 5
9. CortanaPTBR.dll 4fd773153c559e88de149f6f058e4797 3
10. CortanaPTBR.dll 27a0247c5402afddfe998d8293692b90 3
11. CortanaPTBR.dll 48e0d99dba5a7d2f4bfae8ef30705e14 3
12. NativeDebian9.dll 063479e6aa1a0141986da3ebbc7ea8dc 2
13. NativeDebian9.dll ec612cc10c0d17d39a8fd51fae9d51f1 2
14. iOSPhoneProtect.dll 8a8a7776ba50fac106a1a0bde39bd8a1 2
15. iOSPhoneProtect.dll d6be8ebbd7e89a4ff59715314d415ca8 2
16. CortanaPTBR.dll 51bc6e076e8cc2ad38904bf166eec1a5 1
17. IFrameDynamic.dll 85298146b1d991bc7d61af646664cadb 1
18. CortanaPTBR.dll 5ab833befda4289c590cd59ce4f9ad64 1
19. CortanaPTBR.dll be39ba009af52eb8723f61bcce28c5a1 1
20. CortanaPTBR.dll f5d90caa15dcc12f0758cc341f78534e 1
21. IFrameDynamic.dll 180eec95401186607ffcc8df8ed7c190 1
22. CortanaPTBR.dll c1b09ba3b5ff31aba42becc11744e605 1
23. IFrameDynamic.dll 14d717f08ee9d08b3b7da53689a4a33f 1
24. iOSPhoneProtect.dll b7f947331e04b2eb1a7e69be38b5609e 1
25. NativeDebian9.dll 178cc1b894b7866488a0c416aba07374 1
26. iOSPhoneProtect.dll 68aba3d4eb40cd71eb6c7aa7973d6e43 1
27. NativeDebian9.dll 2813f64a6d13de2c18c68bea982ffc04 1
28. banker.exe b77925834fa4a5a72ea7c4ebfc92b3eb 1
29. file.exe 142ebfa97041ca2beec66f9e8dfd07e4 0
More files

Registry Details

Trojan.Spy.Banker.VCM may create the following registry entry or registry entries:
Regexp file mask
%ALLUSERSPROFILE%\Skype\ssScreenVVS2.exe
%APPDATA%\AdobeARM\AdobeARM.exe
%APPDATA%\Microsoft\GoogleTranslator.dll
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\settings.vbe
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\winlogon.vbe
%APPDATA%\winsystem32.dll
%TEMP%\ProcessEX.exe
%WINDIR%\help\tmp52[NUMBERS].dat
%WINDIR%\System32\drivers\prifass.sys
%WINDIR%\winsb\sidebarsql.exe

Directories

Trojan.Spy.Banker.VCM may create the following directory or directories:

%ALLUSERSPROFILE%\ASX\ProgramData
%APPDATA%\SisPlugin
%APPDATA%\system16
%appdata%\SASD41310

Trending

Most Viewed

Loading...