Home Malware Programs Trojans Trojan-Banker.Win32.Banker.apvi

Trojan-Banker.Win32.Banker.apvi

Posted: November 30, 2009

Trojan-Banker.Win32.Banker.apvi is a banking Trojan that steals confidential information from an infected computer and sends the stolen data to a malicious hacker. Trojan-Banker.Win32.Banker.apvi represents a security risk for any PC system or a network environment. Trojan-Banker.Win32.Banker.apvi will penetrate the system without the user's consent before easily contacting a remote server to download additional parasites onto the infected computer. Symptoms for Trojan-Banker.Win32.Banker.apvi include the computer screen flipping upside down or inverting and documents or messages printing by themselves. For the safety of your computer, Trojan-Banker.Win32.Banker.apvi should be removed immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %UserProfile%\UserData\index.dat
    2 %UserProfile%\UserData\STIVO1EB\pmocntr[1].xml
    3 %Windir%\repair.exe
    4 %Windir%\winhlp32.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Loading...