Home Malware Programs Trojans Trojan.Banker

Trojan.Banker

Posted: October 16, 2006

Threat Metric

Ranking: 11,519
Threat Level: 9/10
Infected PCs: 16,755
First Seen: July 24, 2009
Last Seen: October 9, 2023
OS(es) Affected: Windows

Trojan.Banker, which is related to Banload and Downloader.Banload, may install itself on your PC through a browser exploit or some other form of trickery. Once installed, Trojan.Banker parasite will monitor your searches and will intercept passwords to several major banking websites when you type them in. Trojan.Banker opens up a large security hole on your computer and is a very dangerous threat to the security of your personal and financial data.

Aliases

Trojan-Banker.Win32.Agent.axd [Kaspersky]PSW.Banker5.BEUT [AVG]Win32:Banker-GRX [Avast]Sus/Behav-269 [Sophos]Generic PWS.y!coe [McAfee]Trojan-Banker.Win32.Banker.bbqq [Kaspersky]BC.Heuristics.Rootkit.B-7.MV [ClamAV]Win32.Spy.Banker.Prq [eSafe]a variant of Win32/Spy.Banker.PRQ [NOD32]Artemis!E27E6549AD9C [McAfee]Artemis!EF1AAF78FB4E [McAfee]Mal/VB-BL [Sophos]TSPY_BANKER.OGS [TrendMicro]Trojan.Win32.Malware [Sunbelt]Win32/Spy.Banker.AKGG [NOD32]
More aliases (1060)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 7db951dae80a35df746ca1e07e26c89e
Detection count: 803
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
c:\windows\temp\_avg_\unp199856236.tmp File name: unp199856236.tmp
Size: 40.44 KB (40448 bytes)
MD5: f8c0ba1568f1936e9861f1dfcc0b7bec
Detection count: 714
File type: Temporary File
Mime Type: unknown/tmp
Path: c:\windows\temp\_avg_
Group: Malware file
Last Updated: July 31, 2020
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: b7324500cf7281f26441eaaed4896f1f
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: c66d9dcb96cfb746829a5937fd0c3738
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%USERPROFILE%\Documents\fccccddd\ctfmon.exe File name: ctfmon.exe
Size: 2.46 MB (2464256 bytes)
MD5: c7c7d11b94e13af0b34facef9207d625
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents\fccccddd
Group: Malware file
Last Updated: July 30, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 690.68 KB (690688 bytes)
MD5: 7153a3304a617bf7a17bf32975c32d95
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 6742775619a2859420d8dd0d3fe350d7
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%USERPROFILE%\Documents\cccddddd\ctfmon.exe File name: ctfmon.exe
Size: 2.57 MB (2576384 bytes)
MD5: 307ba65ce671e1edeee318c0add61cbd
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents\cccddddd
Group: Malware file
Last Updated: July 30, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: d1f22b2d45c59dbc3dc25b16bbc57d5e
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%USERPROFILE%\Documents\ghhhhhii\ctfmon.exe File name: ctfmon.exe
Size: 2.57 MB (2576384 bytes)
MD5: 423e3179a4123be0b864ae171be8a08d
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents\ghhhhhii
Group: Malware file
Last Updated: July 30, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 690d7c1839ddb7c47a9a6b63a51c8b14
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 82.82 MB (82828282 bytes)
MD5: e83dd76f3c7105b3171decd7ea7d8735
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 6c2d1a00e147f929a0799ce4c3e42e4d
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: b86168139783127f5dd8e133b67d624a
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%SystemDrive%\Users\<username>\AppData\Roaming\msobjut.exe File name: msobjut.exe
Size: 64.51 KB (64512 bytes)
MD5: 6cc3760e6cb027ada2fa7e49feed7b48
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: October 29, 2019
%USERPROFILE%\AppData\uTorrent\necomp.bin.exe File name: necomp.bin.exe
Size: 1.25 MB (1255104 bytes)
MD5: 90bba3b6d0a6daa31fc54137922214dc
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\AppData\uTorrent
Group: Malware file
Last Updated: March 23, 2015
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 4fb110cf0cec230fc9ced294320f5b1f
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 82.82 MB (82828282 bytes)
MD5: a065f761119bfe57b41a43c21a3f65ec
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\servicesnb.exe File name: servicesnb.exe
Size: 82.44 MB (82445300 bytes)
MD5: 0d6d0da058519093acb9a95d41a81a2a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 1e8eed1b8be1e2abfc46cae9320ef19f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: b4296f197facefe555a540ea6d739fde
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: b5af0cf33737d1091ed160ea8c841e93
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 6b717ada82b016a6d12c5190878bbdb2
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories\servicesnb.exe File name: servicesnb.exe
Size: 63.63 MB (63636363 bytes)
MD5: 65621f5a5f833ae75a23d667ef80a2a4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Accessories
Group: Malware file
Last Updated: March 26, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathwinnt4.exewinnt5.exexlr.exeRun keyswinnt2winnt3winnt4winnt5winnt7

Additional Information

The following directories were created:
%APPDATA%\BLozhitheto KUachoundefinedu

Related Posts

One Comment

Loading...