Home Malware Programs Trojans TrojanSpy:MSIL/Banker.C

TrojanSpy:MSIL/Banker.C

Posted: July 14, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 225
First Seen: July 14, 2011
Last Seen: April 29, 2023
OS(es) Affected: Windows

Aliases

not-a-virus.BitcoinMiner [Ikarus]SPR/Tool.BitCoinMiner.ac [AntiVir]Trojan.Generic.KD.295208 [F-Secure]Dropped:Trojan.Generic.KD.295208 [BitDefender]not-a-virus:RiskTool.Win32.BitCoinMiner.ac [Kaspersky]W32/FakeAV.MQ!tr [Fortinet]Mal/FakeAV-MQ [Sophos]FakeAlert-Rena.p [McAfee](Suspicious) - DNAScan [CAT-QuickHeal]HackTool.PGV [AVG]possible-Threat.Win32.BitCoinMiner [Ikarus]DR/Aragon.SS [AntiVir]Trojan.BtcMine.4 [DrWeb]not-a-virus:RiskTool.Win32.BitCoinMiner.a [Kaspersky]Generic.tfr!e [McAfee]
More aliases (112)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\Temp1_Application_Form[1].zip\Application Form\ApplicationForm.exe File name: ApplicationForm.exe
Size: 1.23 MB (1231360 bytes)
MD5: 7f6d2c5b05621dcf6cbdaf21ede8bbcd
Detection count: 92
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Temp1_Application_Form[1].zip\Application Form
Group: Malware file
Last Updated: July 14, 2011
C:\Windows\eu2i.exe File name: eu2i.exe
Size: 71.56 KB (71563 bytes)
MD5: eb45f62ab053c878927659d1c06f75f1
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\eu2i.exe
Group: Malware file
Last Updated: April 29, 2023
%USERPROFILE%\Start Menu\Programs\Startup\start0.exe File name: start0.exe
Size: 288.47 KB (288473 bytes)
MD5: 7fde457ba71149de58158f78f676011c
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 20, 2011
%APPDATA%\Microsoft\Windows\oulwsvm.exe File name: oulwsvm.exe
Size: 241.66 KB (241664 bytes)
MD5: 559a88d3f0c058efa93c7de7557d1639
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: January 10, 2022
%PROGRAMFILES%\PRTG Traffic Grapher\PRTG Traffic Grapher.exe File name: PRTG Traffic Grapher.exe
Size: 2.6 MB (2605056 bytes)
MD5: 3af13ad24ef7e928867e50644236095e
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PRTG Traffic Grapher
Group: Malware file
Last Updated: March 4, 2021
%APPDATA%\whitepixel\NET Administrator.exe File name: NET Administrator.exe
Size: 3.17 MB (3170304 bytes)
MD5: 38b002effceba3e8cebec713bac4e928
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\whitepixel
Group: Malware file
Last Updated: December 16, 2019
%USERPROFILE%\Start Menu\Programs\Startup\start0.exe File name: start0.exe
Size: 285.27 KB (285275 bytes)
MD5: 1a55969d2680bf11e2eacad9508b364d
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 20, 2011
%USERPROFILE%\Local Settings\Application Data\nux.exe File name: nux.exe
Size: 352.25 KB (352256 bytes)
MD5: 36d55a4cddf2369c5c2b3872f7402846
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: July 20, 2011
%USERPROFILE%\Start Menu\Programs\Startup\hahahahaha.exe File name: hahahahaha.exe
Size: 310.3 KB (310304 bytes)
MD5: f017921535eb5135b4cb8a095731da8d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 25, 2011
Loading...