Threat Search: 

ThreatExpert's Statistics for TrojanDownloader:Win32/Banload.gen!N [Microsoft]:

TrojanDownloader:Win32/Banload.gen!N [Microsoft] is also known as:
Threat AliasNumber of Incidents
Mal/Banspy-F [Sophos]38
Win32/MalPackedB.suspicious [AhnLab]30
Trojan-Banker.Win32.Banker [Ikarus]26
Packed.Generic.56 [Symantec]25
Mal_Banker [Trend Micro]21
HeurEngine.Packed-Xcomp [PC Tools]17
Mal/Behav-130 [Sophos]14
BehavesLikeWin32.SMTP-Mailer [Ikarus]12
Trojan-Banker.Win32.Banker.aoiz [Kaspersky Lab]12
Mal/Generic-A [Sophos]11
Trojan Horse [Symantec]11
Trojan-Spy.Win32.Banker.bbh [Ikarus]11
Infostealer.Bancos [Symantec]10
Spyware.Keylogger [Symantec]10
Trojan-Banker.Win32.Banz.gp [Kaspersky Lab]9
Mal/EncPk-CU [Sophos]8
Mal/EncPk-DM [Sophos]7
Suspicious.MH690 [Symantec]7
Trojan-PSW.Bancos [PC Tools]7
Mal/DelpBanc-A, Mal/Banspy-F [Sophos]6
Mal/DelpBanc-A, Mal/Packer, Mal/EncPk-BW, Mal/Banspy-I [Sophos]4
Packed/Upack [AhnLab]4
Trojan-Banker.Win32.Banker.etk [Kaspersky Lab]4
Trojan-Banker.Win32.Banz [Ikarus]4
Trojan-Banker.Win32.Banz.sr [Kaspersky Lab]4
Trojan-Spy.Win32.Bancos [Ikarus]4
Mal/Behav-285 [Sophos]3
Mal/DelpBanc-A [Sophos]3
Mal_Banld-2 [Trend Micro]3
New Malware.jn [McAfee]3
PWS-Banker!bvn [McAfee]3
Trojan.Win32.Scar [Ikarus]3
Trojan-Downloader.Win32.Banload [Ikarus]3
Generic.Banker.Delf [Ikarus]2
Infostealer.Bancos!gen [Symantec]2
Mal/Banspy-K, Mal/Banspy-F, Mal/Banspy-I [Sophos]2
Mal/Behav-056 [Sophos]2
Mal_Bnkr-1 [Trend Micro]2
New Malware.gr [McAfee]2
Packed.Generic.138 [Symantec]2
Packed.Win32.Black.a [Kaspersky Lab]2
PWS-Banker [McAfee]2
PWS-Banker!ee [McAfee]2
PWS-Banker!ejv [McAfee]2
PWS-Banker.gen.aa [McAfee]2
Trojan.Win32.Agent [Ikarus]2
Trojan.Win32.Scar.yrk [Kaspersky Lab]2
Trojan-Downloader.Win32.Agent.cqch [Kaspersky Lab]2
Trojan-Spy.Banker [Ikarus]2
Worm.Win32.Rokut [Ikarus]2
Worm.Win32.Rokut.iq [Kaspersky Lab]2
Backdoor.Rbot [Ikarus]1
Backdoor.Win32.Nepoe [Ikarus]1
Cryp_PESpin [Trend Micro]1
Downloader [Symantec]1
Infostealer [Symantec]1
Mal/Banker-E [Sophos]1
Mal/Banspy-F, Mal/Banspy-I [Sophos]1
Mal/Banspy-I [Sophos]1
Mal/Banspy-I, Mal/Banspy-F [Sophos]1
Mal/Behav-053 [Sophos]1
Mal/Behav-103 [Sophos]1
Mal/DelpBanc-A, Mal/Banspy-F, Mal/Behav-249 [Sophos]1
Mal/Generic-A, Mal/Banspy-F [Sophos]1
Mal/Packer [Sophos]1
Mal/UnkPack-Fam [Sophos]1
Packer.PESpin [Ikarus]1
PWS-Banker!bux [McAfee]1
PWS-Banker!bvo [McAfee]1
PWS-Banker!cw [McAfee]1
PWS-Banker!dzi [McAfee]1
PWS-Banker!eld [McAfee]1
PWS-Banker.gen.b [McAfee]1
PWS-Banker.gen.i [McAfee]1
Rootkit.Win32.Banker.h [Kaspersky Lab]1
Troj/Banker-ETD [Sophos]1
Trojan.Generic [PC Tools]1
Trojan.Win32.Agent.btyu [Kaspersky Lab]1
Trojan.Win32.Agent.cmez [Kaspersky Lab]1
Trojan.Win32.Cossta.c [Kaspersky Lab]1
Trojan.Win32.Scar.aatn [Kaspersky Lab]1
Trojan.Win32.Scar.aauc [Kaspersky Lab]1
Trojan-Banker.Win32.Banbra [Ikarus]1
Trojan-Banker.Win32.Banker.aeqb [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.afos [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.amhn [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.amqt [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.anix [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.anjq [Kaspersky Lab]1
Trojan-Banker.Win32.Banker.huq [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.dr [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.hk [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.me [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.nu [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.rg [Kaspersky Lab]1
Trojan-Banker.Win32.Banz.xk [Kaspersky Lab]1
Trojan-Downloader.Delf!sd6 [PC Tools]1
Trojan-Downloader.Win32.Bagle.jc [Ikarus]1
Trojan-Downloader.Win32.Banload.afwz [Kaspersky Lab]1
Trojan-Downloader.Win32.Delf [Ikarus]1

TrojanDownloader:Win32/Banload.gen!N [Microsoft] has the following possible countries of origin:
OriginNumber of Incidents
Brazil91
Germany4
Israel2
Russian Federation1
Spain1
United Kingdom1
Venezuela1

TrojanDownloader:Win32/Banload.gen!N [Microsoft] is known to be created as:
%CommonAppData%\service.exe
%CommonPrograms%\startup\msnmsgr.exe
%CommonPrograms%\startup\systray.exe
%CommonPrograms%\startup\windowsupdate.scr
%System%\avg.exe
%System%\avgsec.exe
%System%\aviragm.exe
%System%\aviso.exe
%System%\installavg.exe
%System%\javaccpl.exe
%System%\juschedd.exe
%System%\svchosste.exe
%System%\svchosts.exe
%System%\toolbarg.exe
%Windir%\help\goldfinger.dll
%Windir%\help\objsel.dll
%Windir%\help\service.exe
%Windir%\ntsrv\iexplorerr.exe
%Windir%\svchostl.exe
%Windir%\system\gbpsvs.exe
%Windir%\system\msnmsgr.exe
%Windir%\windows.dll
%Windir%\windows32.dll
%Windir%\winshell32.dll
c:\arquivos de programas\sidebar\host.exe
c:\commom files\wspres.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %CommonPrograms% is a variable that refers to the file system directory that contains the directories for the common program groups that appear on the Start menu for all users. A typical path is C:\Documents and Settings\All Users\Start Menu\Programs (Windows NT/2000/XP).
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.