Threat Search: 

ThreatExpert's Statistics for PWS-Banker.gen.ad [McAfee]:

PWS-Banker.gen.ad [McAfee] is also known as:
Threat AliasNumber of Incidents
Infostealer.Bancos [Symantec]5
TROJ_AGENT.AGAX [Trend Micro]4
TROJ_DELF.JCD [Trend Micro]4
Trojan.VB.GTC [PC Tools]4
Trojan.Win32.VB.bkz [Kaspersky Lab]4
Trojan-Downloader.Delf [PC Tools]4
Mal/Generic-A [Sophos]2
Trojan-Banker.Win32.Banker [Ikarus]2
Backdoor.Win32.SdBot.frw [Kaspersky Lab]1
Downloader [Symantec]1
Infostealer.Bankash.B [Symantec]1
Infostealer.Banker.C [Symantec]1
Infostealer.Banpaes [Symantec]1
Mal/EncPk-CZ [Sophos]1
Mal/UnkPack-Fam [Sophos]1
Troj/BanHost-AB [Sophos]1
TROJ_BANKER.HCJ [Trend Micro]1
TROJ_BANLOAD.CWT [Trend Micro]1
Trojan Horse [Symantec]1
Trojan.BAT.Qhost [Ikarus]1
Trojan.BAT.Qhost.bc [Kaspersky Lab]1
Trojan.Delf.AXGF [PC Tools]1
Trojan.Dropper [Symantec]1
Trojan.Win32.Agent.ceaw [Kaspersky Lab]1
Trojan.Win32.Delf.azb [Kaspersky Lab]1
Trojan.Win32.Trizz.cz [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.ahdq [Kaspersky Lab]1
Trojan-Clicker.Win32.VB.blm [Kaspersky Lab]1
Trojan-Downloader.Banload!sd5 [PC Tools]1
Trojan-Downloader.BHO!sd6 [PC Tools]1
Trojan-Downloader.Win32.Banload.agj [Kaspersky Lab]1
Trojan-Downloader.Win32.Banload.bqi [Kaspersky Lab]1
TrojanDropper:Win32/Ambler.A [Microsoft]1
TrojanSpy.Bancos.CJB [PC Tools]1
Trojan-Spy.Banker [Ikarus]1
TrojanSpy.Banker.ATWW [PC Tools]1
Trojan-Spy.Win32.Bancos.adi [Kaspersky Lab]1
Trojan-Spy.Win32.Banker [Ikarus]1
Trojan-Spy.Win32.Banker.cqp [Kaspersky Lab]1
Trojan-Spy.Win32.Zbot [Ikarus]1
Trojan-Spy.Win32.Zbot.idk [Kaspersky Lab]1
TrojanSpy:Win32/Banker [Microsoft]1
TrojanSpy:Win32/Zbot.gen!C [Microsoft]1
TSPY_BANCOS.DWE [Trend Micro]1
TSPY_BANKER.MHF [Trend Micro]1
Win-Trojan/Xema.variant [AhnLab]1

PWS-Banker.gen.ad [McAfee] has the following possible countries of origin:
OriginNumber of Incidents
Brazil8
Russian Federation6
Spain3
Ukraine2
Germany1
Mexico1

PWS-Banker.gen.ad [McAfee] is known to be created as:
%CommonPrograms%\startup\antivirus.exe
%System%\cftmon.exe
%System%\iebho.dll
%System%\iospc.sys
%System%\mshelp.exe
%Windir%\config\svchost.exe
%Windir%\iebho.dll
%Windir%\media\ltaskup.exe
%Windir%\mwsx.exe
%Windir%\rbuilder.exe
%Windir%\system\regscr.exe
Notes:
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.