Threat Database Trojans Trojan.Banker

Trojan.Banker

By CagedTech in Trojans

Threat Scorecard

Ranking: 15,770
Threat Level: 90 % (High)
Infected Computers: 7,188
First Seen: July 24, 2009
Last Seen: April 20, 2024
OS(es) Affected: Windows

Trojan.Banker is a constantly evolving type of threat that tries to collect banking information from its victims. Trojan.Banker contains most of the distinctive traits of high-level Trojans but may be way harder to detect and remove than most of them. The ways this cyber threat may compromise the security of its victims are standard. A significant part of the affected people admit that prior to the infection they had opened suspicious files sent via email or downloaded software from unverified sources. If you are careful when you conduct these two operations, the chances for Trojan.Banker to reach you should diminish greatly. However, if your PC is already infected with some other threat, this notorious Trojan may be downloaded automatically. Trojan.Banker works in the background so you may perceive no symptoms whatsoever about the upcoming danger. This parasite may monitor your online actions. Trojan.Banker has means to detect when you are on a banking site.

In case you make the mistake to type your login credentials while Trojan.Banker is there, the people that control Trojan.Banker may obtain this crucial data. It goes without saying that the results may be huge financial losses. All the intercepted information reaches the hackers through some machines that are used for the attack. They are called 'Command and Control ' servers. With their help, the culprits are able to communicate with their threats. They may send various instructions and execute different operations. It is possible Trojan.Banker to contribute to the download of additional cyber threats. Just like other banking Trojans, this threat may interfere with the Windows Registries, which makes Trojan.Banker quite a challenge to be deleted manually. If you have any suspicions that Trojan.Banker may be present, you should download a powerful anti-malware tool immediately.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Kaspersky Trojan-Banker.Win32.Agent.axd
AVG PSW.Banker5.BEUT
Avast Win32:Banker-GRX
Sophos Sus/Behav-269
McAfee Generic PWS.y!coe
Kaspersky Trojan-Banker.Win32.Banker.bbqq
ClamAV BC.Heuristics.Rootkit.B-7.MV
eSafe Win32.Spy.Banker.Prq
NOD32 a variant of Win32/Spy.Banker.PRQ
McAfee Artemis!E27E6549AD9C
McAfee Artemis!EF1AAF78FB4E
Sophos Mal/VB-BL
TrendMicro TSPY_BANKER.OGS
Sunbelt Trojan.Win32.Malware
NOD32 Win32/Spy.Banker.AKGG

SpyHunter Detects & Remove Trojan.Banker

File System Details

Trojan.Banker may create the following file(s):
# File Name MD5 Detections
1. servicesnb.exe 7db951dae80a35df746ca1e07e26c89e 343
2. unp199856236.tmp f8c0ba1568f1936e9861f1dfcc0b7bec 305
3. servicesnb.exe b7324500cf7281f26441eaaed4896f1f 28
4. ctfmon.exe 3e8134f0ea08961ff755d314dc1aa0a0 26
5. servicesnb.exe 7153a3304a617bf7a17bf32975c32d95 18
6. servicesnb.exe 6742775619a2859420d8dd0d3fe350d7 12
7. servicesnb.exe 5f97ba9d745a6c483677af7717303f48 11
8. ctfmon.exe 307ba65ce671e1edeee318c0add61cbd 10
9. ctfmon.exe 423e3179a4123be0b864ae171be8a08d 7
10. servicesnb.exe 690d7c1839ddb7c47a9a6b63a51c8b14 7
11. servicesnb.exe e83dd76f3c7105b3171decd7ea7d8735 6
12. servicesnb.exe 6c2d1a00e147f929a0799ce4c3e42e4d 5
13. servicesnb.exe b86168139783127f5dd8e133b67d624a 4
14. msobjut.exe 6cc3760e6cb027ada2fa7e49feed7b48 4
15. necomp.bin.exe 90bba3b6d0a6daa31fc54137922214dc 4
16. servicesnb.exe 4fb110cf0cec230fc9ced294320f5b1f 3
17. servicesnb.exe a065f761119bfe57b41a43c21a3f65ec 3
18. servicesnb.exe 0d6d0da058519093acb9a95d41a81a2a 2
19. servicesnb.exe 1e8eed1b8be1e2abfc46cae9320ef19f 2
20. servicesnb.exe b4296f197facefe555a540ea6d739fde 2
21. servicesnb.exe b5af0cf33737d1091ed160ea8c841e93 2
22. servicesnb.exe 6b717ada82b016a6d12c5190878bbdb2 2
23. servicesnb.exe 65621f5a5f833ae75a23d667ef80a2a4 2
24. servicesnb.exe 23a2ce28bd54c79efb0137c4db2d763e 1
25. ctfmon.exe c7c7d11b94e13af0b34facef9207d625 1
26. servicesnb.exe c66d9dcb96cfb746829a5937fd0c3738 1
27. servicesnb.exe d1f22b2d45c59dbc3dc25b16bbc57d5e 1
28. 03ecc9db25eff7bda2864e0efb2c1bcc 03ecc9db25eff7bda2864e0efb2c1bcc 0
More files

Registry Details

Trojan.Banker may create the following registry entry or registry entries:
File name without path
winnt4.exe
winnt5.exe
xlr.exe
Run keys
winnt2
winnt3
winnt4
winnt5
winnt7

Directories

Trojan.Banker may create the following directory or directories:

%APPDATA%\BLozhitheto KUachoundefinedu

Related Posts

Trending

Most Viewed

Loading...