Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Apr 11, 2011
TrojanSpy:Win32/Banker.SK is a trojan that deletes security-related files and services including GPPlugin, a component for an online financial security suite.
Alert level: severe
Updated on Oct 28, 2014

Windows Defender detects and removes this threat.

See the Win32/Banker family description for more information.

Alert level: severe
Updated on May 13, 2014
Windows Defender Antivirus detects and removes this threat.
 
This threat is a registry import data file used as a tool by Win32/Banker to delete registry subkeys and registry data that enhance web browser security for certain online banking web sites. The presence of this data file may be an indication that your PC is infected with TrojanSpy:Win32/Banker.
Alert level: severe
Updated on Sep 21, 2014

Windows Defender detects and removes this threat.

This family of data-stealing trojans can capture your online banking details, such as your login credentials and account numbers. They can then send this information to a malicious hacker.

They can be installed on your PC when you open an email attachment that looks like a greeting card.

Most variants target Brazilian bank customers.

Alert level: high
Updated on Feb 29, 2012
TrojanSpy:Win32/Banker.AEK is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Jun 25, 2012
TrojanSpy:Win32/Banker.AHM is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Mar 09, 2012

TrojanSpy:Win32/Banker.AEJ!cfg is a malicious JScript proxy auto-configuration file that may redirect the user's browser traffic through an attacker-controlled proxy server.

Alert level: severe
Updated on Oct 08, 2021
Alert level: severe
Updated on Mar 03, 2013
TrojanSpy:Win32/Banker.AKQ is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Jul 09, 2013
TrojanSpy:Win32/Banker.AKY is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Sep 05, 2011

TrojanSpy:Win32/Banker.YL is a trojan that steals user credentials when the user visits certain websites. It then sends the stolen credentials to a remote attacker via an online form.

Alert level: severe
Updated on Jun 29, 2016

Microsoft Defender Antivirus detects and removes this threat.

This threat is a member of the Win32/Banker family of data-stealing trojans. These threats can steal your online banking user names and passwords and send them to a malicious hacker.

They mostly target Brazilian bank customers.

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Apr 11, 2011
TrojanSpy:Win32/Banker.OT!inf is an autorun configuration file that runs a copy of the trojan TrojanSpy:Win32/Banker.OT. Win32/Banker.OT redirects user Web browsing away from certain online banking sites.
Alert level: severe
Updated on Feb 29, 2012
TrojanSpy:Win32/Banker.AEE is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Apr 01, 2012

TrojanProxy:JS/Banker.M is a JavaScript trojan that intercepts communication between an infected computer and certain online banking websites, resulting in the possible theft of logon credentials or other sensitive information.

Alert level: severe
Updated on Apr 11, 2011
TrojanSpy:Win32/Banker.VBK is a trojan that monitors a certain Brazilian Web site in an attempt to steal information. The stolen information is then sent to a remote attacker.
Alert level: severe
Updated on Apr 11, 2011
TrojanSpy:Win32/Banker.HP is a trojan that monitors user online activities.
Alert level: severe
Updated on Jun 25, 2012
TrojanSpy:Win32/Banker.AHP is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe
Updated on Apr 11, 2011
TrojanSpy:Win32/Banker.OT is a variant of the Win32/Banker family of data stealing trojans. It redirects Web browsing of certain online banking sites and may copy itself to removable drives.
 
Win32/Banker is a family of data-stealing trojans that captures banking credentials such as account numbers and passwords from computer users. It then relays the captured information to the attacker. Many Win32/Banker variants target customers of Brazilian banks while some variants target customers of other banks. Please see our detailed TrojanSpy:Win32/Banker family analysis elsewhere in this encyclopedia for additional information.
Alert level: severe
Updated on May 31, 2012
TrojanSpy:Win32/Banker.AGT is a member of Win32/Banker - a family of data-stealing trojans that captures online banking credentials, such as account login names and passwords, and relays the captured information to a remote attacker. Most Win32/Banker variants target customers of Brazilian banks, though some variants target customers of banks in other locations.
Alert level: severe