Tuesday, February 3, 2009

PWS.Banker.gen.bu Trojan

Removing PWS.Banker.gen.bu
Categories: Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

PWS.Banker.gen.bu Also known as:

[McAfee]PWS-Banker.gen.bu;
[Panda]Trj/Banker.IBT;
[Other]Infostealer.Banker.D,Trojan.Nethell,VirTool:Win32/Obfuscator.C

Visible Symptoms:
Files in system folders:
[%SYSTEM%]\w1m.dll
[%SYSTEM%]\w1m.dll

How to detect PWS.Banker.gen.bu:

Files:
[%SYSTEM%]\w1m.dll
[%SYSTEM%]\w1m.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{b3056695-ce91-404e-bd3b-62a4a3e6adfd}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b3056695-ce91-404e-bd3b-62a4a3e6adfd}

Removing PWS.Banker.gen.bu:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
SenSi Worm Removal instruction
Y3K.Remote.Administration.Tool.Pro Backdoor Information

No comments: