The following system changes may indicate the presence of this malware:
The presence of the following registry modifications:
In subkey: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ Sets value: "AutoConfigURL" With data: "hxxp://config-cache.com/ie"
Trojan:Win32/Banload.A is a member of Win32/Banload - a family of trojans that downloads other malware, usually members of the Win32/Banker family.
What to do now
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
This threat may make lasting changes to a computer's configuration that are NOT restored by detecting and removing this threat. For more information on returning an infected computer to its pre-infected state, please see the following instructions:
1. In Internet Explorer, click the Tools menu, and then click Internet Options.
2. Click the Connections tab, and then click LAN Settings.
3. In the Automatic configuration area, de-select Use automatic configuration script.
4. Click OK.
For more information about using automatic proxy configuration, see the following articles: