We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Banload.ARG
Aliases: BAT/Spy.Banker.AN (ESET) Trojan.DownLoader7.56719 (Dr.Web) Trojan-Banker.BAT.Qhost (Ikarus) BAT/ProxyChanger.dropper (AVG)
Summary
This malware attempts to steal sensitive and confidential information from affected users to perpetrate fraud. If you believe that your personal financial information may have been compromised, please refer to the following advisory for additional advice:
The malware may steal your information by recording your usernames and passwords. After removal of the threat you should change your passwords. Please refer to the following advisory for tips on how to create and use passwords:
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
- Microsoft Security Essentials or, for Windows 8, Windows Defender
- Microsoft Safety Scanner
- Microsoft Windows Malicious Software Removal Tool
TrojanDownloader:Win32/Banload.ARG attempts to steal sensitive and confidential information from affected users to perpetrate fraud. If you believe that your personal financial information may have been compromised, please refer to the following advisory for additional advice:
The malware may steal your information by recording your usernames and passwords. After removal of the threat you should change your passwords. Please refer to the following advisory for tips on how to create and use passwords:
Additional remediation instructions for TrojanDownloader:Win32/Banload.ARG
This threat may make lasting changes to a computer's configuration that are not restored by detecting and removing this threat. For more information on returning an infected computer to its pre-infected state, please see the following articles:
- Restoring your system registry:
- For Windows 7
- For Windows Vista
- For Windows XP
- Enabling System Restore:
- For Windows 8
- For Windows 7
- For Windows Vista
- For Windows XP
- Using the system's recovery options:
- For Windows 8
- For Windows 7 and Vista
- For Windows XP