Symantec.com > Security Response > Infostealer.Finero

Infostealer.Finero

Risk Level 1: Very Low

Printer Friendly Page

Discovered: October 3, 2003
Updated: February 13, 2007 12:53:52 PM
Also Known As: PWSteal.Finero
Type: Trojan Horse
Systems Affected: Windows 2000, Windows 95, Windows 98, Windows NT, Windows XP


Infostealer.Finero is a Trojan Horse that mimics the online interfaces of certain Brazilian banks to steal account information. This Trojan may arrive as the email attachment "BBsetup.exe."

The downloader and the Trojan are both written in Borland Delphi, and all the files are UPX-packed.


NOTE : Definitions prior to May 10, 2006 may detect this threat as PWSteal.Finero

Protection

  • Initial Rapid Release version October 6, 2003
  • Latest Rapid Release version August 20, 2008 revision 017
  • Initial Daily Certified version October 6, 2003
  • Latest Daily Certified version January 20, 2009 revision 048
  • Initial Weekly Certified release date October 8, 2003

Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Medium

Distribution

  • Distribution Level: Low

Writeup By: Scott Gettis
Search by name
Example: W32.Beagle.AG@mm
2 year protection
Windows Vista Security