Monday, November 10, 2008

Banker.CLI Trojan

Removing Banker.CLI
Categories: Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Visible Symptoms:
Files in system folders:
[%PROFILE%]\LOCAL.EXE
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-18784E3B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2446A57B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-25E02562.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2C660302.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-36641ECB.pf
[%WINDOWS%]\system\svchost.exe
[%PROFILE%]\LOCAL.EXE
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-18784E3B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2446A57B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-25E02562.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2C660302.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-36641ECB.pf
[%WINDOWS%]\system\svchost.exe

How to detect Banker.CLI:

Files:
[%PROFILE%]\LOCAL.EXE
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-18784E3B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2446A57B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-25E02562.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2C660302.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-36641ECB.pf
[%WINDOWS%]\system\svchost.exe
[%PROFILE%]\LOCAL.EXE
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-18784E3B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2446A57B.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-25E02562.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-2C660302.pf
[%WINDOWS%]\Prefetch\LIVEUPDATE.EXE-36641ECB.pf
[%WINDOWS%]\system\svchost.exe

Removing Banker.CLI:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:

No comments: