Skip to main content
Published Sep 29, 2010 | Updated Sep 15, 2017

TrojanSpy:Win32/Bancos.WO

Detected by Microsoft Defender Antivirus

Aliases: W32/Trojan-Gypikon-based.DE!Maximus (Command) W32/Obfuscated.F!genr (Norman) PSW.Banker5.BMEZ (AVG) TR/Dldr.Delphi.Gen (Avira) Win32/Spy.Banker.UDJ (ESET) Trojan-Banker.Win32.Banker (Ikarus) PWS-Banker.gen.b (McAfee) Trj/Banbra.GUN (Panda) Mal/Banspy-K (Sophos) Trojan.Win32.Generic.pak!cobra (Sunbelt Software)

Summary

TrojanSpy:Win32/Bancos.WO is a password stealing trojan, that targets specific online banking websites. Captured credentials may be sent via SMTP (Simple Mail Transfer Protocol) email to a specified email address.
To detect and remove this threat and other malicious software that may be installed in your computer, run a full-system scan with an up-to-date antivirus product such as the following:
 
 
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
 
TrojanSpy:Win32/Bancos.WO attempts to steal sensitive and confidential information from affected users to perpetrate fraud. If you believe that your personal financial information may have been compromised, please refer to the following advisory for additional advice:
Follow us