Home Malware Programs Rogue Anti-Spyware Programs FakeWG.A

FakeWG.A

Posted: February 5, 2010

Threat Metric

Threat Level: 10/10
Infected PCs: 78
First Seen: July 24, 2009
OS(es) Affected: Windows

FakeWG.A is a banking Trojan which steals private information such as account numbers, passwords and banking credentials. Once installed, FakeWG.A uses the built-in SMTP client engine or communicates with a remote SMTP server to send emails of the collected information to the trojan author. FakeWG.A may also wait in the background and control user's Internet activity. A logging procedure begins when a certain website is reached, or if the address of a reached website includes certain words. FakeWG.A may supplement legitimate banking or payment system websites to access user details.

Aliases

Backdoor.Tidserv [Symantec]Mal/EncPk-CZ [Sophos]Win32/Adware.WiniGuard [NOD32]Program:Win32/FakeWG.A [Microsoft]DNSChanger.f.gen.a [McAfee]Packed.Win32.Krap.d [F-Secure]Suspicious File [eSafe](Suspicious) - DNAScan [CAT-QuickHeal]Win32/Cryptor [AVG]Win32:Fasec [Avast]TR/Crypt.XPACK.Gen [AntiVir]
Loading...