Home Malware Programs Trojans Trojan.Bancos

Trojan.Bancos

Posted: July 2, 2007

Threat Metric

Threat Level: 8/10
Infected PCs: 6,019
First Seen: July 24, 2009
Last Seen: August 5, 2023
OS(es) Affected: Windows

Trojan.Bancos, which is directly associated with Banload, Banker and
Downloader.Banload may install itself with a help of Trojans or through browser security loopholes. Once installed on your computer, Trojan.Bancos will try to steal your passwords when you log in onto particular banking websites. Trojan.Bancos is designed to steal your financial and personally identifiable information. Trojan.Bancos is a serious threat and is recommended to be removed immediately.

Aliases

Trj/Bancos.SE [Panda]PSW.Banker.ELP [AVG]W32/Bancos.HA!tr [Fortinet]Trojan-Spy.Win32.Bancos.ha [Sunbelt]Win-Trojan/Bancos.135680.E [AhnLab-V3]TrojanSpy:Win32/Bancos.GA [Microsoft]Trojan-Spy.Win32.Bancos.ha!IK [a-squared]Trojan/Win32.Bancos [Antiy-AVL]Troj/Bancos-DA [Sophos]Heuristic.LooksLike.Win32.Agent.C [McAfee-GW-Edition]TSPY_BANCOS.ARL [TrendMicro]TR/Spy.Banco.ha.128 [AntiVir]BackDoor.Generic.992 [DrWeb]TrojWare.Win32.Spy.Bancos.U [Comodo]Trojan-Banker.Win32.Bancos.ha [Kaspersky]
More aliases (240)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\Win2008.exe File name: Win2008.exe
Size: 3.01 MB (3018240 bytes)
MD5: 7e72d81119ec1932afaf2bafc30f06f6
Detection count: 290
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Win2008.exe
Group: Malware file
Last Updated: May 11, 2021
%SystemDrive%\Win2012.exe File name: Win2012.exe
Size: 3.63 MB (3631104 bytes)
MD5: 388082a97b037af654c2bb1d9bc9bbd7
Detection count: 274
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%
Group: Malware file
Last Updated: September 24, 2016
%LOCALAPPDATA%\Win2003.exe File name: Win2003.exe
Size: 3.26 MB (3267680 bytes)
MD5: 8205112b2459219e06d7877540c9b98c
Detection count: 234
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: September 24, 2016
C:\Win2014.exe File name: Win2014.exe
Size: 3.85 MB (3857408 bytes)
MD5: fd19126bfafb0f32c34683bb8d979bdc
Detection count: 211
File type: Executable File
Mime Type: unknown/exe
Path: C:
Group: Malware file
Last Updated: September 24, 2016
C:\Users\<username>\AppData\Local\Win2008R2.exe File name: Win2008R2.exe
Size: 84.48 KB (84480 bytes)
MD5: 267f3c5ffc6e3e7e71bcbb707da540e7
Detection count: 180
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Win2008R2.exe
Group: Malware file
Last Updated: May 11, 2021
%USERPROFILE%\Configura??es locais\Dados de aplicativos\Win2006.exe File name: Win2006.exe
Size: 5.03 MB (5030400 bytes)
MD5: 4a008552521811fcdcd84537c401cc8f
Detection count: 133
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Configura??es locais\Dados de aplicativos
Group: Malware file
Last Updated: September 24, 2016
%SystemDrive%\Win2005.exe File name: Win2005.exe
Size: 3.67 MB (3675136 bytes)
MD5: 7ed034b7123e878505c75edf522b9287
Detection count: 126
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%
Group: Malware file
Last Updated: September 24, 2016
%LOCALAPPDATA%\Win2000.exe File name: Win2000.exe
Size: 3.79 MB (3790848 bytes)
MD5: 42f25fc5ef1fc6cfc909d504e4311410
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: September 24, 2016
winnt4.exe File name: winnt4.exe
Size: 669.18 KB (669184 bytes)
MD5: 42b78ecc3e1cca9b1930bfc08ecbd488
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
bdflash.exe File name: bdflash.exe
Size: 1.55 MB (1558016 bytes)
MD5: 78c9b322c21234273e33321f717a4225
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 22, 2010
%APPDATA%\MacromediaFlash\MacromediaFlash.exe File name: MacromediaFlash.exe
Size: 3.62 MB (3623276 bytes)
MD5: 244bfc9b8028676cbfa4e347f4c08b5c
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MacromediaFlash
Group: Malware file
Last Updated: January 26, 2017
cpq519.exe File name: cpq519.exe
Size: 34.3 KB (34304 bytes)
MD5: 6aec87de49167e6b807c48fc234b676c
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
krn4.exe File name: krn4.exe
Size: 4.79 MB (4797952 bytes)
MD5: 8e48d7950d41fd8aab2f34802d2f6b7e
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
%WINDIR%\smss.exe File name: smss.exe
Size: 221.18 KB (221184 bytes)
MD5: 9f9867962f0f24b5dbec3b6a4cba030b
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: October 14, 2010
%APPDATA%\Windows Security Host\Winhost.exe File name: Winhost.exe
Size: 2.45 MB (2453987 bytes)
MD5: 5660640c79a599281ef417ae91fa726e
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Windows Security Host
Group: Malware file
Last Updated: October 7, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\plutedxd.exe

Additional Information

The following directories were created:
%APPDATA%\Windows Security Host

Related Posts

Loading...