Sophos

Sophos blogs

Troj/Bancb-Fam

Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Protection available since 3 June 2005 17:41:54 (GMT)
Last updated 30 June 2005 11:33:46 (GMT)
Detected by All Sophos products
  • Free virus, spyware, and adware scan
  • Test your existing anti-virus protection
  • Find threats your anti-virus missed

Action

Please follow the instructions for removing Trojans.

The name Troj/Bancb-Fam is used where a file belongs to a particular family of Trojans, but the variant is not separately identified. Sophos's proactive protection technology will identify such files as a -Fam variant.

  1. Ensure that you are using the most recent IDE files, as more precise detection could now be available. If necessary
  2. Please send us a sample to assist in improving our technology.
  3. Use the instructions for removing generically detected files to delete the file from your computer.
  4. If you require further assistance with disinfection, contact support.

More Information

Troj/Bancb-Fam detects members of the Bancban family of Trojans. Members of this family typically attempt to steal confidential information when a user visits banking-related websites. Troj/Bancb-Fam detects members of the Bancban family of Trojans. Members of this family typically attempt to steal confidential information when a user visits banking-related websites.

Trojans of this family typically monitor URLs entered into Internet Explorer. When certain websites are visited, the Trojan may display a fake user interface in order to trick the user into entering confidential details. Stolen information is sent by email to a remote user.

Typically a registry entry is created in order to run the Trojan on system startup:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
<Trojan filename excluding extension>
<Path to Trojan>

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer