Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Jun 10, 2009 | Updated Sep 15, 2017

TrojanSpy:Win32/Bancos

Detected by Microsoft Defender Antivirus

Aliases: Win-Trojan/Bancos (AhnLab) W32/Bancos (Command) Trojan horse PSW.Banker3 (AVG) Trojan.Spy.Banker (BitDefender) Win32/Bancos (CA) Trojan-Banker.Win32.Bancos (Kaspersky) PWS-Banker.gen.i (McAfee) Trj/Bancos (Panda) Troj/Banker (Sophos) Infostealer.Bancos (Symantec)

Summary

Microsoft security software detects and removes this threat.
 
TrojanSpy:Win32/Bancos is a family of password stealing trojans that target specific online banking Web sites commonly located in Brazil.
 
Captured credentials may be sent to the attacker via e-mail, ftp or sent to a remote server through some other protocol depending on the variant.
 
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, see http://www.microsoft.com/protect/computer/viruses/vista.mspx.
Follow us