Trojan.Spy.Banker.AAM
Threat Scorecard
EnigmaSoft Threat Scorecard
EnigmaSoft Threat Scorecards are assessment reports for different malware threats which have been collected and analyzed by our research team. EnigmaSoft Threat Scorecards evaluate and rank threats using several metrics including real-world and potential risk factors, trends, frequency, prevalence, and persistence. EnigmaSoft Threat Scorecards are updated regularly based on our research data and metrics and are useful for a wide range of computer users, from end users seeking solutions to remove malware from their systems to security experts analyzing threats.
EnigmaSoft Threat Scorecards display a variety of useful information, including:
Popularity Rank: The ranking of a particular threat in EnigmaSoft’s Threat Database.
Severity Level: The determined severity level of an object, represented numerically, based on our risk modeling process and research, as explained in our Threat Assessment Criteria.
Infected Computers: The number of confirmed and suspected cases of a particular threat detected on infected computers as reported by SpyHunter.
See also Threat Assessment Criteria.
| Threat Level: | 80 % (High) |
| Infected Computers: | 24 |
| First Seen: | November 24, 2011 |
| OS(es) Affected: | Windows |
The detection of Trojan.Spy.Banker.AAM on your system indicates a potential security threat that requires immediate attention. This malware is designed to compromise your computer's security and privacy, making it essential to understand its nature and take steps to remove it.
Table of Contents
What Is Trojan.Spy.Banker.AAM?
Trojan.Spy.Banker.AAM is a type of malware that falls under the broader category of spyware. Spyware is designed to secretly monitor and collect information about a user's computer activities, often without their knowledge or consent. The specific characteristics of Trojan.Spy.Banker.AAM suggest it may be focused on banking and financial information, but its capabilities can extend beyond this, potentially capturing keystrokes, browsing history, and other sensitive data.
How Trojan.Spy.Banker.AAM Operates
Malware like Trojan.Spy.Banker.AAM typically operates by infiltrating a computer system through various means, such as exploiting vulnerabilities in software, being bundled with other programs, or being downloaded from malicious websites. Once installed, it can run in the background, unnoticed by the user, and communicate with its command and control servers to send collected data or receive further instructions. Its operation can lead to significant privacy and security issues, including identity theft and financial loss.
Symptoms of Infection
Identifying the symptoms of a Trojan.Spy.Banker.AAM infection can be challenging due to its stealthy nature. However, common signs of malware infection include slow system performance, frequent crashes, unexpected pop-ups, and changes in browser settings. Additionally, if you notice unauthorized transactions or suspicious activity on your bank statements, it could indicate that your system is compromised by this or similar malware.
How to Remove Trojan.Spy.Banker.AAM
- Boot your computer in Safe Mode with Networking. This will limit the malware's ability to interfere with the removal process and allow you to download necessary tools.
- Perform a full scan of your system using a reputable anti-malware tool, such as SpyHunter. Ensure the tool is updated to the latest version to increase the chances of detecting and removing the malware.
- Uninstall any suspicious programs that you do not recognize or that were installed around the time the malware was detected. Be cautious and only remove programs you are certain are not essential to your system's operation.
- Reset your web browsers (Chrome, Firefox, Edge) to their default settings. This can help remove any malicious extensions or settings changes made by the malware.
- Reboot your computer and perform another full scan with your anti-malware tool to ensure that the malware has been completely removed. Repeat this process if the malware is still detected after the first removal attempt.
Conclusion
Removing Trojan.Spy.Banker.AAM from your system requires careful and thorough steps to ensure that all components of the malware are eliminated. It's crucial to stay vigilant and monitor your system's performance and security after removal, as malware can sometimes leave behind remnants or vulnerabilities that could be exploited again. Maintaining up-to-date antivirus software, being cautious with email attachments and downloads, and regularly updating your operating system and other software can help protect your computer from future infections.
Aliases
15 security vendors flagged this file as malicious.
| Antivirus Vendor | Detection |
|---|---|
| McAfee-GW-Edition | Generic FakeAlert!up |
| Kaspersky | Trojan-FakeAV.Win32.FakeRecovery.af |
| Avast | Win32:FakeAV-COD [Trj] |
| Symantec | UltraDefragFraud!gen10 |
| NOD32 | a variant of Win32/Kryptik.WED |
| AhnLab-V3 | Trojan/Win32.FakeAV |
| eTrust-Vet | Win32/FraudSystemFix.A!generic |
| Sophos | Mal/FakeAV-PI |
| McAfee-GW-Edition | Artemis!39B0608F8FA2 |
| Kaspersky | Trojan-Downloader.Win32.FraudLoad.znhh |
| NOD32 | a variant of Win32/Kryptik.WGT |
| Sophos | Mal/FakeAV-OP |
| Kaspersky | Trojan.Win32.FakeAv.iukr |
| NOD32 | a variant of Win32/Kryptik.WAX |
| Fortinet | W32/FakeAV.OP!tr |
File System Details
| # | File Name | MD5 |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
|---|---|---|---|
| 1. | kmCiLdhHPnMcPi.exe | 1db6c13b62e7bd4f87337ed7dcc4f944 | 9 |
| 2. | VNFgalygGdHd.exe | fe7c971d61705957edde388147463e0f | 5 |
| 3. | TdXFm9th4n84BO.exe | f9da4ec3f0a5d5d621fe857d9e241b86 | 2 |
| 4. | XonkvRCKQsxiup.exe | 39b0608f8fa25e66435f5bd76ffb0069 | 1 |