Threat Database Trojans Trojan-Banker.Win32.Bancos.ggl

Trojan-Banker.Win32.Bancos.ggl

Trojan-Banker.Win32.Bancos.ggl is a password stealing Trojan that typically targets online banking sites in Brazil. Trojan-Banker.Win32.Bancos.ggl is able to use snapshots and keylogging functionalities to steal sensitive information such as banking passwords. The stolen information is later sent to a remote attacker via e-mail or ftp. Trojan-Banker.Win32.Bancos.ggl may also disable existing security applications in order to remain undetected and continue with is malicious activities.

Aliases

2 security vendors flagged this file as malicious.

Anti-Virus Software Detection
- Win-Trojan/Bancos.339968.F
- Mal/Generic-A

File System Details

Trojan-Banker.Win32.Bancos.ggl may create the following file(s):
# File Name Detections
1. %System%\sdra64.exe

Registry Details

Trojan-Banker.Win32.Bancos.ggl may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]

Trending

Most Viewed

Loading...